CVE-2013-4517
CVE-2013-4517
Apache Santuario XML Security for Java before 1.5.6, when applying Transforms, allows remote attackers to cause a denial of service (memory consumption) via crafted Document Type Definitions (DTDs), related to signatures.
Productos afectados
n/a · n/a¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →Referencias
http://osvdb.org/101169http://packetstormsecurity.com/files/124554/Java-XML-Signature-Denial-Of-Service-Attack.htmlhttp://rhn.redhat.com/errata/RHSA-2014-0170.htmlhttp://rhn.redhat.com/errata/RHSA-2014-0171.htmlhttp://rhn.redhat.com/errata/RHSA-2014-0172.htmlhttp://rhn.redhat.com/errata/RHSA-2014-0195.htmlhttp://rhn.redhat.com/errata/RHSA-2014-1725.htmlhttp://rhn.redhat.com/errata/RHSA-2014-1726.htmlhttp://rhn.redhat.com/errata/RHSA-2014-1727.htmlhttp://rhn.redhat.com/errata/RHSA-2014-1728.htmlhttp://rhn.redhat.com/errata/RHSA-2015-0675.htmlhttp://rhn.redhat.com/errata/RHSA-2015-0850.html