2.6
CVE-2010-4265
- EPSS 2.13%
- Veröffentlicht 30.12.2010 21:00:02
- Zuletzt bearbeitet 16.06.2026 23:24:28
- Erkennungen
The org.jboss.remoting.transport.bisocket.BisocketServerInvoker$SecondaryServerSocketThread.run method in JBoss Remoting 2.2.x before 2.2.3.SP4 and 2.5.x before 2.5.3.SP2 in Red Hat JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) 4.3 through 4.3.0.CP09 allows remote attackers to cause a denial of service (daemon outage) by establishing a bisocket control connection TCP session, and then not sending any application data, related to a missing CVE-2010-3862 patch. NOTE: this can be considered a duplicate of CVE-2010-3862 because a missing patch should not be assigned a separate CVE identifier.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Redhat ≫ Jboss Remoting Version 2.2.0
Redhat ≫ Jboss Remoting Version 2.2.2 Update sp10
Redhat ≫ Jboss Remoting Version 2.2.2 Update sp11
Redhat ≫ Jboss Remoting Version 2.2.2 Update sp2
Redhat ≫ Jboss Remoting Version 2.2.2 Update sp4
Redhat ≫ Jboss Remoting Version 2.2.2 Update sp7
Redhat ≫ Jboss Remoting Version 2.2.2 Update sp8
Redhat ≫ Jboss Remoting Version 2.2.3
Redhat ≫ Jboss Remoting Version 2.2.3 Update sp1
Redhat ≫ Jboss Remoting Version 2.2.3 Update sp2
Redhat ≫ Jboss Remoting Version 2.2.3 Update sp3
Redhat ≫ Jboss Enterprise Application Platform Version 4.3.0
Redhat ≫ Jboss Enterprise Application Platform Version 4.3.0 Update cp01
Redhat ≫ Jboss Enterprise Application Platform Version 4.3.0 Update cp02
Redhat ≫ Jboss Enterprise Application Platform Version 4.3.0 Update cp03
Redhat ≫ Jboss Enterprise Application Platform Version 4.3.0 Update cp04
Redhat ≫ Jboss Enterprise Application Platform Version 4.3.0 Update cp05
Redhat ≫ Jboss Enterprise Application Platform Version 4.3.0 Update cp06
Redhat ≫ Jboss Enterprise Application Platform Version 4.3.0 Update cp07
Redhat ≫ Jboss Enterprise Application Platform Version 4.3.0 Update cp08
Redhat ≫ Jboss Enterprise Application Platform Version 4.3.0 Update cp09
Redhat ≫ Jboss Enterprise Application Platform Version 5.1.0
Redhat ≫ Jboss Enterprise Web Platform Version 5.1.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 2.13% | 0.796 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 2.6 | 4.9 | 2.9 |
AV:N/AC:H/Au:N/C:N/I:N/A:P
|
https://issues.jboss.org/browse/JBPAPP-5253
https://issues.jboss.org/browse/JBREM-1261
http://securitytracker.com/id?1024840
http://www.redhat.com/support/errata/RHSA-2010-0964.html
http://www.redhat.com/support/errata/RHSA-2010-0965.html
https://bugzilla.redhat.com/show_bug.cgi?id=660623