Skip to content
  • coron
  • coron

NewsTag

Header Image
Archive

Month: December 2019

4 Posts

Featured

Posted byWpmaster
[waitress] HTTP Request Smuggling: Content-Length Sent Twice in Waitress
Posted byWpmaster
[waitress] HTTP Request Smuggling: Invalid Transfer-Encoding in Waitress
Posted byWpmaster
[waitress] HTTP Request Smuggling: LF vs CRLF handling in Waitress
Posted byRe:minder
伊藤銀次と高橋幸宏、¥ENレーベルのクリスマスアルバムにみる2人のポップスター 1983年 11月28日 細野晴臣と高橋幸宏を中心とした ¥ENレーベルのオムニバスアルバム「WE WISH YOU A MERRY CHRISTMAS」がリリースされた日

[waitress] HTTP Request Smuggling: Content-Length Sent Twice in Waitress

  • Posted inUncategorized
  • Posted byWpmaster
  • 12/21/201903/25/2022

Impact
Waitress would header fold a double Content-Length header and due to being unable to cast the now comma separated value to an integer would set the Content-Length to 0 internally.
So a request with:
Content-Length: 10
Content-Length: 10

would g…

[waitress] HTTP Request Smuggling: Invalid Transfer-Encoding in Waitress

  • Posted inUncategorized
  • Posted byWpmaster
  • 12/21/201903/25/2022

Impact
Waitress would parse the Transfer-Encoding header and only look for a single string value, if that value was not chunked it would fall through and use the Content-Length header instead.
According to the HTTP standard Transfer-Encoding should be …

[waitress] HTTP Request Smuggling: LF vs CRLF handling in Waitress

  • Posted inUncategorized
  • Posted byWpmaster
  • 12/21/201903/25/2022

Impact
Waitress implemented a "MAY" part of the RFC7230 (https://tools.ietf.org/html/rfc7230#section-3.5) which states:
Although the line terminator for the start-line and header fields is
the sequence CRLF, a recipient MAY recogn…

伊藤銀次と高橋幸宏、¥ENレーベルのクリスマスアルバムにみる2人のポップスター 1983年 11月28日 細野晴臣と高橋幸宏を中心とした ¥ENレーベルのオムニバスアルバム「WE WISH YOU A MERRY CHRISTMAS」がリリースされた日

  • Posted inUncategorized
  • Posted byRe:minder
  • 12/11/2019

ニューウェーブの立役者が名を連ねたクリスマスアルバム1983年11月28日、その年のクリスマスを飾る…

NewsTag
WordPress theme by componentz

Archives

2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30
Hit enter to search or ESC to close