UseBB BBCode Parsing Denial of Service


UseBB BBCode Parsing Denial of Service
SECUNIA ADVISORY ID: SA37328
VERIFY ADVISORY: http://secunia.com/advisories/37328/
DESCRIPTION: A vulnerability has been reported in UseBB, which can be exploited by malicious users to cause a DoS (Denial of Service).
The vulnerability is caused due to an infinite loop when parsing certain BBCodes. This can be exploited to cause a DoS by e.g. posting a message containing specially crafted BBCodes.
The vulnerability is reported in versions prior to 1.0.10.
SOLUTION: Update to version 1.0.10. http://www.usebb.net/downloads/
PROVIDED AND/OR DISCOVERED BY: Reported by the vendor.
ORIGINAL ADVISORY: http://www.usebb.net/community/topic-post9775.html#post9775
———————————————————————-

  1. Bisher keine Kommentare.

Sie müssen angemeldet sein, um einen Beitrag zu verfassen.