First published: Sat Aug 31 2002(Updated: )
The library feature for Adobe Content Server 3.0 does not verify if a customer has already checked out an eBook, which allows remote attackers to cause a denial of service (resource exhaustion) by checking out the same book multiple times.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Adobe Adobe Content Server | =3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2002-1018 is considered a denial of service vulnerability due to resource exhaustion caused by unchecked eBook checkouts.
To fix CVE-2002-1018, apply the latest patches provided by Adobe for Adobe Content Server 3.0.
CVE-2002-1018 impacts users of Adobe Content Server version 3.0.
CVE-2002-1018 allows remote attackers to exhaust server resources by checking out the same eBook multiple times.
While there is no official workaround for CVE-2002-1018, monitoring and limiting the number of checkouts per user could mitigate the risk.