PT-2015-2596 · Red Hat · Wildfly+1
Aaron Ogburn
+1
·
Publicado
2015-10-27
·
Atualizado
2023-02-13
·
CVE-2015-5220
CVSS v2.0
5.0
Média
| Vetor | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
Red Hat Enterprise Application Platform (EAP) versions prior to 6.4.4
WildFly (formerly JBoss Application Server) versions prior to 6.4.4
Description
The issue allows remote attackers to cause a denial of service (memory consumption) via a large request header. This is due to a buffer overflow vulnerability in the Web Console of the affected platforms.
Recommendations
For Red Hat Enterprise Application Platform (EAP) versions prior to 6.4.4, update to version 6.4.4 or later.
For WildFly (formerly JBoss Application Server) versions prior to 6.4.4, update to version 6.4.4 or later.
Correção
DoS
Buffer Overflow
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Red Hat Jboss Enterprise Application Platform
Wildfly