CVE-2007-5281: Input Validation
The Java Secure Socket Extension (JSSE) in the Hitachi Cosminexus Developer's Kit for Java in various Hitachi Cosminexus 7.5 products before 07-50-01, when using JSSE for SSL/TLS support, allows remote attackers to cause a denial of service via certain SSL/TLS handshake requests. NOTE: this may be the same as CVE-2007-3698.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2007-5281?
CVE-2007-5281 is classified as a high severity vulnerability due to its potential to cause denial of service.
How do I fix CVE-2007-5281?
To remediate CVE-2007-5281, upgrade the affected Hitachi Cosminexus products to version 07-50-01 or later.
What products are affected by CVE-2007-5281?
CVE-2007-5281 affects various Hitachi Cosminexus 7.5 products including the application server, client, and developer kits.
What type of vulnerability is CVE-2007-5281?
CVE-2007-5281 is a denial of service vulnerability that occurs during SSL/TLS handshake processes.
Can CVE-2007-5281 be exploited remotely?
Yes, CVE-2007-5281 can be exploited by remote attackers to create denial of service conditions.