Sun.Java.Web.Server.Authorization.Buffer.Overflow

description-logoDescription

This indicates an attack attempt against a buffer-overflow vulnerability in Sun's Java System Web Server.
The vulnerability is due to an error when the vulnerable software handles a malformed string in an "Authorization: Digest" HTTP header. A remote attacker may exploit this to execute arbitrary code or cause a denial of service.

affected-products-logoAffected Products

Sun Java System Web Proxy Server 4.0.12
Sun Java System Web Server 6.1 SP9
Sun Java System Web Server 7.0 Update 7

Impact logoImpact

System Compromise: Remote attackers can gain control of vulnerable systems.

recomended-action-logoRecommended Actions

Please refer to the vendor's web site for the suggested workaround:
http://www.oracle.com/us/sun/index.html

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)