Preface: HTTP Cookie overflowLogo -Internet Security Systems

HTTP Cookie overflow

advICE :Intrusions : 2000638
 FAQ
Oh my gosh, I'm being HACKED!!!
How do I report the hacker to my ISP?
I'm seeing lots of attacks, is this normal?
Summary

A long "Cookie" field containing binary characters has been seen, probably an indication of a buffer overflow attempt.

Details

The Cookie field is a small bit of text that a website plants on your computer, which your browser then sends back to the website every time you revisit it. In this manner, the website can track you.

Some versions of website software contain bugs in their implementation of cookies. They can be broken into by buffer overflow exploits.

This signature triggers when a long HTTP "Cookie:" field has been seen.

 more information
BugtraqID: 1821   Apache mod_cookies Buffer Overflow Vulnerability
 
NAI Advisory: 002   Vulnerabilities in the Apache httpd
 

 parametric information
lengthThe length of the field.
cookieThe value of the field.

 
Version appeared: 2.5 

Privacy Policy |  Copyright Info