imagick+bad data

This is a discussion on imagick+bad data within the PHP General forums, part of the PHP Programming Forums category; Hi, I'm running some tests on a php site I'm writing that allows users to upload images to ...


Go Back   Usenet Forums > PHP Programming Forums > PHP General

FAQ Members List Calendar Search Today's Posts Mark Forums Read
  #1 (permalink)  
Old 02-17-2004
Hal Robertson
 
Posts: n/a
Default imagick+bad data

Hi,

I'm running some tests on a php site I'm writing that allows users to
upload images to the server, which will take care of sizing them
appropriately for display.

Has anyone tried to call imagick_readimage on a garbage file?

When I try it on my Linux machine to read a file with a .gif extension
containing maybe 20 random characters I type in on the keyboard, the
apache process consumes 100% cpu and eventually segfaults. It
sometimes takes a couple of tries, but the best I've gotten is 1/3
times the process spins. Nice little DOS vulnerability, eh?

I'm using Imagick 0.9.8, Apache 2.0.46, PHP 4.3.4 ... any
suggestions?
Reply With Quote
Reply
Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is Off
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT +1. The time now is 09:57 AM.


Powered by vBulletin® Version 3.7.3
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.0.0