Jump to content
  • Checkout
  • Login
  • Get in touch

osCommerce

The e-commerce.

osC triggers Firewall attack (GDI+ JPEG)


Marc_J

Recommended Posts

Posted

OK, this is a strange one. I'm porting an osC installation over to my server (I didn't design it, but I'm pretty sure it's all come over OK).

 

When I try to browse it (both at it's old location and on my server) I get to view one page, then it dies on me. NOTHING at all. This got my attention, even more so when I realised that I couldn't browse ANY sites on my server after the osC store seemed to kill it.

 

For a period of 10 minutes....exactly....after which it all came back!

 

This made me look closer at my own setup, and when I checked my Sygate Firewall I saw the following: -

 

[217] Microsoft Multiple Application/OS GDI+ JPEG Processing Buffer Overflow Vulnerability attempt detected (CAN-2004-200)

 

Traffic from IP address xx.xxx.xx.xxx is blocked from 04/25/2006 19:04:06 to 04/25/2006 19:14:06.

 

Which explains everything! I've got other osC installations running which aren't doing this. What could possibly be causing it on this one? I don't want to post the URL as it isn't mine, but if anyone feels they might be able to solve it and wants a closer look, I'll PM them the URL....

Archived

This topic is now archived and is closed to further replies.

×
×
  • Create New...