PT-2007-5032 · Hitachi · Processing Kit For Xml+2
Published
2007-07-15
·
Updated
2011-03-08
·
CVE-2007-3794
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Hitachi Cosminexus versions V4 through V7
Processing Kit for XML versions prior to 20070511
Developer's Kit for Java versions prior to 20070312
Description
The issue is related to a buffer overflow that occurs when processing certain GIF images using GIF image processing APIs by a Java application. This can allow attackers to have an unknown impact.
Recommendations
For Hitachi Cosminexus versions V4 through V7, update to a version later than V7 or apply a patch if available.
For Processing Kit for XML versions prior to 20070511, update to version 20070511 or later.
For Developer's Kit for Java versions prior to 20070312, update to version 20070312 or later.
As a temporary workaround, consider restricting the use of GIF image processing APIs by Java applications until a patch is available.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Developer'S Kit For Java
Hitachi Cosminexus
Processing Kit For Xml