Affected: Canon GP300 using WebSpooler v4.5.062 (fr), other versions ?
Risk: High
Remote: Yes

Description:
A simple http request can crash the whole print server.
Request is "GET /" on tcp/80
After sending "GET /" a reboot is needed to print again or to take hand on
the print server.

The web server seems to be Apache/1.0.3 (banner is returned in some
conditions).
I did not find this vulnerability for Apache/1.0.3 on securityfocus so this
banner is maybe a fake or the code has been changed.

Canon has been contacted.
They said message has been forwarded to services concerned by this
vulnerability (dev ?).
No news since.







Ce message et toutes les pi=E8ces jointes (ci-apr=E8s le "message") sont =
=E9tablis =E0 l'intention exclusive de ses destinataires et sont confidenti=
els. Si vous recevez ce message par erreur, merci de le d=E9truire et d'en =
avertir imm=E9diatement l'exp=E9diteur. Toute utilisation de ce message non=
conforme =E0 sa destination, modification, diffusion ou toute publication,=
totale ou partielle, est interdite, sauf autorisation expresse.FININFO (et=
ses filiales) d=E9cline(nt) toute responsabilit=E9 au titre de ce message,=
dans l'hypoth=E8se ou il aurait =E9t=E9 modifi=E9, alt=E9r=E9, falsifi=E9 =
ou encore =E9dit=E9 ou diffus=E9 sans autorisation.
-----------------------------------------------------
This message and any attachments (the "message") is intended
solely for the addressees and is confidential. If you receive this=20
message in error, please delete it and immediately notify the=20
sender. Any use not in accord with its purpose, any dissemination=20
or disclosure, either whole or partial, is prohibited except formal=20
approval. Neither FININFO (nor any of its subsidiaries or affiliates)=20
shall be liable for the message if modified, altered, falsified, edited=20
or diffused without authorization.=20