Lucene search

K
redhatRedHatRHSA-2011:0210
HistoryFeb 10, 2011 - 12:00 a.m.

(RHSA-2011:0210) Important: jbossweb security update

2011-02-1000:00:00
access.redhat.com
14

0.041 Low

EPSS

Percentile

92.2%

JBoss Web Server is the web container, based on Apache Tomcat, in JBoss
Enterprise Application Platform. It provides a single deployment platform
for the JavaServer Pages (JSP) and Java Servlet technologies.

A denial of service flaw was found in the way certain strings were
converted to Double objects. A remote attacker could use this flaw to cause
JBoss Web Server to hang via a specially-crafted HTTP request.
(CVE-2010-4476)

Users of JBoss Web Server should upgrade to these updated packages, which
contain a backported patch to correct this issue. The JBoss server process
must be restarted for this update to take effect.