Summary
This host is running Oracle GlassFish/Java System Application Server and is prone to denial of service vulnerability.
Impact
Successful exploitation could allow malicious attackers to cause a denial of service.
Impact Level: Application
Solution
Apply the security updates.
http://www.oracle.com/technetwork/topics/security/cpuoct2012-1515893.html
*****
NOTE: Ignore this warning, if above mentioned patch is manually applied.
*****
Insight
The flaw is caused due to an unspecified error within the CORBA ORB subcomponent, which allows remote users to cause a denial of service condition.
Affected
Oracle GlassFish version 2.1.1, 3.0.1 and 3.1.2
Oracle Java System Application Server version 8.1 and 8.2
References
Severity
Classification
-
CVE CVE-2012-3155 -
CVSS Base Score: 5.0
AV:N/AC:L/Au:N/C:N/I:N/A:P
Related Vulnerabilities
- Asterisk Products Invalid SDP SIP Channel Driver DoS Vulnerability
- ejabberd XML Parsing Denial of Service Vulnerability (Windows)
- ClamAV 'parseicon()' Denial Of Service Vulnerability
- Django Forms Library Algorithmic Complexity Vulnerability
- Apache Input Header Folding and mod_ssl ssl_io_filter_cleanup DoS Vulnerabilities