涉及程序:
WEB服务程序
描述:
Sun Java System Web和Application Server远程拒绝服务漏洞
详细:
Sun Java System Web和Application Server是应用WEB服务程序。
Sun Java System Web和Application Server在处理部分畸形证书时存在问题,远程攻击者可以利用这个漏洞对服务程序进行拒绝服务攻击。
目前没有详细漏洞细节提供。
<*来源:Sun(sm) Alert Notification
链接:http://sunsolve.sun.com/search/document.do?assetkey=1-26-57669-1
*>
受影响系统:
Sun Java System Application Server 7.0 Standard Edition
Sun Java System Application Server 7.0 Platform Edition
Sun Java System Application Server 7.0 Enterprise Edition
Sun Java System Web Server 6.1 SP1
Sun Java System Web Server 6.0 SP7
攻击方法:
暂无有效攻击代码
解决方案:
厂商补丁:
Sun
---
目前厂商已经发布了升级补丁以修复这个安全问题,请到厂商的主页下载:
Sun Java System Web Server 6.0 SP 8:
网管u家u.bitsCN.com
http://wwws.sun.com/software/download/products/40968fe6.html
Sun Java System Web Server 6.1 SP 3:
http://wwws.sun.com/software/download/products/415a094d.html
Sun Java System Application Server 7 Standard Edition Update 5:
http://wwws.sun.com/software/download/products/414b472d.html
Sun Java System Application Server Platform Edition 7 Update 5:
http://wwws.sun.com/software/download/products/4151fe59.html
Sun Java System Application Server 7 2004Q2 Update 1:
http://wwws.sun.com/software/download/products/4154c5a5.html