The Active Network
ActiveMac Anonymous | Create a User | Reviews | News | Forums | Advertise  
 

  *  

  Microsoft Security Bulletin MS02-026: Unchecked Buffer in ASP.NET Worker Process (Q322289)
Time: 00:00 EST/05:00 GMT | News Source: ActiveWin.com | Posted By: Todd Richardson

ASP.NET is a collection of technologies that help developers to build web-based applications. Web-based applications, including those built using ASP.NET, rely on HTTP to provide connectivity. One characteristic of HTTP as a protocol is that it is stateless, meaning that each page request from a user to a site is reckoned an independent request. To compensate for this, ASP.NET provides for session state management through a variety of modes.

One of these modes is StateServer mode. This mode stores session state information in a separate, running process. That process can run on the same machine or a different machine from the ASP.NET application. There is an unchecked buffer in one of the routines that handles the processing of cookies in StateServer mode. A security vulnerability results because it is possible for an attacker to seek to exploit it by mounting a buffer overrun attack. A successful attack could cause the ASP.NET application to restart. As a result, all current users of the web-based application would see their current session restart and their current session information would be lost.

Write Comment
Return to News

  Displaying 551 through 551 of 551
Prev | First
  The time now is 1:14:51 AM ET.
Any comment problems? E-mail us
#551 By 4240821 (82.115.6.120) at 6/12/2025 12:16:39 PM
https://nsfw.su/v/iba7qlnghk44.php
https://nsfw.su/v/519avyvul6r0.php
https://nsfw.su/v/ztnf6ns8oz5q.php
https://nsfw.su/v/863sofox43up.php
https://nsfw.su/v/uevrunshibse.php
https://nsfw.su/v/sz7m2ym79pqp.php
https://nsfw.su/v/hdbqa10vg9x3.php
https://nsfw.su/v/7zvf8474r4si.php
https://nsfw.su/v/sez91f914rdd.php
https://nsfw.su/v/ln7pr7ry42qy.php

Write Comment
Return to News
  Displaying 551 through 551 of 551
Prev | First
  The time now is 1:14:51 AM ET.
Any comment problems? E-mail us
User name and password:

 

  *  
  *   *