CVE-2011-4610
10.02.2014, 23:55
JBoss Web, as used in Red Hat JBoss Communications Platform before 5.1.3, Enterprise Web Platform before 5.1.2, Enterprise Application Platform before 5.1.2, and other products, allows remote attackers to cause a denial of service (infinite loop) via vectors related to a crafted UTF-8 and a "surrogate pair character" that is "at the boundary of an internal buffer."Enginsight
Vendor | Product | Version |
---|---|---|
redhat | jboss_communications_platform | 𝑥 ≤ 5.1 |
redhat | jboss_enterprise_application_platform | 𝑥 ≤ 5.1.2 |
redhat | jboss_enterprise_brms_platform | 𝑥 ≤ 5.1.0 |
redhat | jboss_enterprise_web_platform | 𝑥 ≤ 5.1.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References