Sun Java System Web Proxy Server Unspecified Buffer Overflow

Tuesday, April 26 2005 @ 09:15 AM EDT

A vulnerability has been reported in Sun Java System Web Proxy Server, which potentially can be exploited by malicious people to compromise a vulnerable system.

The vulnerability is caused due to an unspecified error and can be exploited to cause a buffer overflow.

Successful exploitation may allow execution of arbitrary code with the privileges of the server process (user "nobody" by default).

The vulnerability affects version 3.6 Service Pack 6 and prior.

SOFTWARE:
Sun Java System Web Proxy Server 3.x

SOLUTION:
Apply Service Pack 7 or later.
http://www.sun.com/download/index.jsp

PROVIDED AND/OR DISCOVERED BY:
Reported by vendor.

ORIGINAL ADVISORY:
http://sunsolve.sun.com/search/document.do?assetkey=1-26-57763-1

VERIFY ADVISORY:
http://secunia.com/advisories/14901/

Secunia Security Advisories

0 comments



http://community.securityteam.us/article.php/20050426091531812