ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Industry watch Toolkit

MS posts fix for IIS security hole

Martin Veitch ZDNet.co.uk

Published: 23 Jun 1997 13:18 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Microsoft has posted a description and fix to prevent hackers causing Internet Information Server (IIS) to crash when they enter certain URLs.

Part of the statement reads: "These types of Denial of Service issues are common on the Internet and could happen to any Web server. However, this bug does not compromise sensitive data in any way. It forces IIS to become unavailable for a short time and is easily remedied by restarting the Web server... Microsoft takes issues like these very seriously and has responded rapidly by addressing the issue with a permanent fix that prohibits this specific type of attack and also records the IP address of the attacker in a log file... A malicious hacker could write a program to find the exact character sequence. A hacker simply can't publish a URL that would bring down an IIS server."

The bug was on reported on the Bugtraq mailing list for developers sharing data about security bugs in Unix and related operating environments.

  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with Dell

Did you find this article useful?
45 out of 97 people found this useful


Full Talkback thread

0 comments

Related Jobs

Implementation Engineer - Unix / Servers - London

Ensuring there are documented processes within the teams for the smooth running of the services -Provide troubleshooting and specialist support to ...

Operations Support Analyst Unix, PL/SQL, Scripting

EXPERIENCE REQUIREMENTS Ideally the successful candidate will have a basic understanding of the architecture and issues about operating solutions in ...

Security Consultant Ethical Hacking / Penetration Testing - London

Responsibilities: - Deliver security assessment services including network scanning, vulnerability testing, penetration testing, search engine ...

Discussions

319762 319762

Eve of Distraction

Saturday 26 July 2008, 4:37 AM

1 comment

Featured Talkback

When all is said, if Microsoft produce the best product people will buy it and thats a good thing. If people have to buy their product because no one else can produce an alternative, only because interoperability protocols are kept secret, then thats a bad thing.

By: pround

Read full story:
EU court crushes Microsoft's antitrust appeal