Vulnerabilities > CVE-2007-2881 - Buffer Overflow vulnerability in Sun Java Web Proxy Server
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
COMPLETE Integrity impact
COMPLETE Availability impact
COMPLETE Summary
Multiple stack-based buffer overflows in the SOCKS proxy support (sockd) in Sun Java Web Proxy Server before 4.0.5 allow remote attackers to execute arbitrary code via crafted packets during protocol negotiation.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 16 |
Saint
bid | 24165 |
description | Sun Java System Web Proxy sockd buffer overflow |
id | web_proxy_sunone |
osvdb | 35841 |
title | sun_java_proxy_sockd |
type | remote |
References
- http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=536
- http://osvdb.org/35841
- http://secunia.com/advisories/25405
- http://sunsolve.sun.com/search/document.do?assetkey=1-26-102927-1
- http://www.kb.cert.org/vuls/id/746889
- http://www.securityfocus.com/bid/24165
- http://www.securitytracker.com/id?1018130
- http://www.vupen.com/english/advisories/2007/1957
- https://exchange.xforce.ibmcloud.com/vulnerabilities/34524