Sun Java System Web Server Digest Authorization Buffer Overflow
| TSL ID | FSC20100201-11 |
| CVE ID(s) | Not available. |
| Severity | Critical |
| Description | A buffer overflow vulnerability exists in Sun Java System Web Server. The vulnerability is due to insufficient boundary checks when processing malformed HTTP requests. A remote unauthenticated attack can leverage this vulnerability by sending a crafted HTTP request to a target server. In an attack scenario where code execution is successful the injected code will be executed within the security context of the target service. An unsuccessful exploit attempt may abnormally terminate the affected service. The vendor, Sun, has released an advisory for the vulnerability: http://sunsolve.sun.com/search/document.do?assetkey=1-66-275850-1 |
| Affected Products |
|
| CVSS Score |
Base 10.0 (AV:N/AC:L/Au:N/C:C/I:C/A:C):
|