CVE-2013-3724 Monkey HTTPD 1.1.1 - Denial of Service Vulnerability

2013-06-04 Thread dougtko
The security risk of the DoS vulnerability is estimated as low. 12. References http://bugs.monkey-project.com/ticket/181 13. Credits Doug Prostko dougtko[at]gmail[dot]com Vulnerability discovery

CVE-2013-3843 Monkey HTTPD 1.2.0 - Buffer Overflow DoS Vulnerability With Possible Arbitrary Code Execution

2013-06-04 Thread dougtko
dougtko[at]gmail[dot]com Vulnerability discovery

Re: Monkey HTTPD 1.1.1 - Denial of Service Vulnerability

2013-06-04 Thread dougtko
CVE reserved for this bug: CVE-2013-3724

Monkey HTTPD 1.1.1 - Denial of Service Vulnerability

2013-05-29 Thread dougtko
: = The security risk of the redirection vulnerability is estimated as low(+). Credits: Doug Prostko dougtko[at]gmail[dot]com - Vulnerability discovery

Dopewars 1.5.12 Server Denial of Service

2009-10-06 Thread dougtko
## Description ## The jet command in Dopewars 1.5.12 is vulnerable to a segmentaion fault due to a lack of input validation. ## POC ## ruby -e 'print foo^^Ar111\n^^Acfoo\n^AV65536\n' | nc localhost 7902 ## Fix ## This issue is resolved in the SVN version of the application.