[Moin-user] DOS attack vunerability

Preben Randhol randhol+moinmoin at pvv.org
Sun Sep 30 05:49:03 EDT 2007


Hi

I'm running a moinmoin with fastcgi and lighttpd.

I just noticed that if I direct my web-browser to localhost:2426 (port
of the moin process) and then press stop, then the moin.fcg process
starts eating CPU and goes to 94-99% CPU usage.

Is this a bug or feature? It would be very easy to bring a web-site
down unless firewalled against this.


Preben 




More information about the Moin-user mailing list