Lucene search

K
redhatRedHatRHSA-2011:0211
HistoryFeb 10, 2011 - 12:00 a.m.

(RHSA-2011:0211) Important: jbossweb security update

2011-02-1000:00:00
access.redhat.com
7

0.041 Low

EPSS

Percentile

92.2%

JBoss Web Server is a web container based on Apache Tomcat. It provides a
single deployment platform for the JavaServer Pages (JSP) and Java Servlet
technologies.

A denial of service flaw was found in the way certain strings were
converted to Double objects. A remote attacker could use this flaw to cause
JBoss Web Server to hang via a specially-crafted HTTP request.
(CVE-2010-4476)

Users of JBoss Web Server should upgrade to these updated packages, which
contain a backported patch to correct this issue. The JBoss server process
must be restarted for this update to take effect.