CVE-2007-2439: Critical severity Caucho Technology Resin vulnerability
Caucho Resin Professional 3.1.0 and Caucho Resin 3.1.0 and earlier for Windows allows remote attackers to cause a denial of service (device hang) and read data from a COM or LPT device via a DOS device name with an arbitrary extension.
Affected Software
Remediation
Patch Available
Patch Available
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2007-2439?
CVE-2007-2439 is classified as a high severity vulnerability due to its potential to cause a denial of service.
How do I fix CVE-2007-2439?
The best way to address CVE-2007-2439 is to upgrade to a version of Caucho Resin that is later than 3.1.0.
What systems are affected by CVE-2007-2439?
CVE-2007-2439 affects Caucho Resin Professional 3.1.0 and all earlier versions for Windows.
What type of attack can exploit CVE-2007-2439?
CVE-2007-2439 can be exploited by remote attackers to cause a device hang and gain unauthorized access to data.
Can CVE-2007-2439 be exploited remotely?
Yes, CVE-2007-2439 can be exploited remotely through the use of a DOS device name with an arbitrary extension.