Release DateMar 16, 2010 |
Severitycritical |
ImpactSystem CompromiseDenial of Service |
DescriptionThis indicates an attack attempt against a buffer overflow vulnerability in Sun Java System Web Server.The vulnerability is caused by an error when the vulnerable software handles a specially crafted HTTP request. It allows a remote attacker to execute arbitrary code. |
Affected ProductsSun Java System Web Server 7.0 Update 7Sun Java System Web Server 7.0 Update 6 Sun Java System Web Server 7.0 Update 3 Sun Java System Web Server 7.0 Update 2 Sun Java System Web Server 7.0 Update 1 |
Recommended ActionsUpdate to the latest versions:http://wwws.sun.com/software/products/web_srvr/home_web_srvr.html |
Coverage IPS
VCM |
Common Vulnerabilities and Exposures (CVE)CVE-2010-0361 |
Reference/shttp://www.securityfocus.com/bid/37874 (BugTraq) |