PT-2007-5032 · Hitachi · Processing Kit For Xml+2
Publicado
2007-07-15
·
Atualizado
2011-03-08
·
CVE-2007-3794
CVSS v2.0
10
Alta
| Vetor | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Hitachi Cosminexus versions V4 through V7
Processing Kit for XML versions prior to 20070511
Developer's Kit for Java versions prior to 20070312
Description
The issue is related to a buffer overflow that occurs when processing certain GIF images using GIF image processing APIs by a Java application. This can allow attackers to have an unknown impact.
Recommendations
For Hitachi Cosminexus versions V4 through V7, update to a version later than V7 or apply a patch if available.
For Processing Kit for XML versions prior to 20070511, update to version 20070511 or later.
For Developer's Kit for Java versions prior to 20070312, update to version 20070312 or later.
As a temporary workaround, consider restricting the use of GIF image processing APIs by Java applications until a patch is available.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Developer'S Kit For Java
Hitachi Cosminexus
Processing Kit For Xml