2.6
CVE-2010-4265
- EPSS 1.03%
- Published 30.12.2010 21:00:02
- Last modified 11.04.2025 00:51:21
- Source secalert@redhat.com
- Teams watchlist Login
- Open Login
The org.jboss.remoting.transport.bisocket.BisocketServerInvoker$SecondaryServerSocketThread.run method in JBoss Remoting 2.2.x before 2.2.3.SP4 and 2.5.x before 2.5.3.SP2 in Red Hat JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) 4.3 through 4.3.0.CP09 allows remote attackers to cause a denial of service (daemon outage) by establishing a bisocket control connection TCP session, and then not sending any application data, related to a missing CVE-2010-3862 patch. NOTE: this can be considered a duplicate of CVE-2010-3862 because a missing patch should not be assigned a separate CVE identifier.
Data is provided by the National Vulnerability Database (NVD)
Redhat ≫ Jboss Remoting Version2.2.0
Redhat ≫ Jboss Remoting Version2.2.2 Updatesp10
Redhat ≫ Jboss Remoting Version2.2.2 Updatesp11
Redhat ≫ Jboss Remoting Version2.2.2 Updatesp2
Redhat ≫ Jboss Remoting Version2.2.2 Updatesp4
Redhat ≫ Jboss Remoting Version2.2.2 Updatesp7
Redhat ≫ Jboss Remoting Version2.2.2 Updatesp8
Redhat ≫ Jboss Remoting Version2.2.3
Redhat ≫ Jboss Remoting Version2.2.3 Updatesp1
Redhat ≫ Jboss Remoting Version2.2.3 Updatesp2
Redhat ≫ Jboss Remoting Version2.2.3 Updatesp3
Redhat ≫ Jboss Enterprise Application Platform Version4.3.0
Redhat ≫ Jboss Enterprise Application Platform Version4.3.0 Updatecp01
Redhat ≫ Jboss Enterprise Application Platform Version4.3.0 Updatecp02
Redhat ≫ Jboss Enterprise Application Platform Version4.3.0 Updatecp03
Redhat ≫ Jboss Enterprise Application Platform Version4.3.0 Updatecp04
Redhat ≫ Jboss Enterprise Application Platform Version4.3.0 Updatecp05
Redhat ≫ Jboss Enterprise Application Platform Version4.3.0 Updatecp06
Redhat ≫ Jboss Enterprise Application Platform Version4.3.0 Updatecp07
Redhat ≫ Jboss Enterprise Application Platform Version4.3.0 Updatecp08
Redhat ≫ Jboss Enterprise Application Platform Version4.3.0 Updatecp09
Redhat ≫ Jboss Enterprise Application Platform Version5.1.0
Redhat ≫ Jboss Enterprise Web Platform Version5.1.0
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 1.03% | 0.753 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 2.6 | 4.9 | 2.9 |
AV:N/AC:H/Au:N/C:N/I:N/A:P
|