Version: 2008
  • On BNET: Online porn struggles for profits

August 26, 1999 11:40 AM PDT

Netscape issues fix to Web server bug

  • Post a comment
Netscape and a security software maker are offering a fix for a bug that could allow hackers to gain access to Netscape Web servers.

Using a method called "buffer overflow," a hacker can send a server a Web address with more characters than the machine can handle, which causes it to grant access to the attacker that it normally would not.

"A [malicious] hacker could do whatever he wants to the server. He can launch a virus or open an account without a password," said Christopher Rouland, director of Internet Security Systems' X-Force, a research and development team of security experts that maintains a database of hacking exploits and techniques.

The bug affects Netscape Enterprise and FastTrack servers, according to ISS, a provider of network security software based in Atlanta. Businesses use Netscape Enterprise and FastTrack servers to build and manage intranet and extranet networks.

An experienced attacker can force the machine to process any program code that is sent. ISS has demonstrated that it is possible to use this vulnerability to give an attacker full control of a machine.

ISS and Netscape have posted a fix for the bug, which can be found on Netscape's iPlanet security site.

Latest tech news headlines

RSS Feeds

Add headlines from CNET News to your homepage or feedreader.

More feeds available in our RSS feed index.

Markets

Market news, charts, SEC filings, and more

Related quotes

Dow Jones Industrials (0.34%) 35.67 10,424.57
S&P 500 (0.21%) 2.37 1,108.35
NASDAQ (0.07%) 1.45 2,195.80
CNET TECH (0.00%) 0.04 1,602.10
  Symbol Lookup
advertisement

Inside CNET News

Scroll Left Scroll Right