CVE-2008-2404: Buffer Overflow
Published Jun 4, 2008
·Updated
Stack-based buffer overflow in the request handling implementation in Sun Java Active Server Pages (ASP) Server before 4.0.3 allows remote attackers to execute arbitrary code via an unspecified string field.
Affected Software
2 affected components
Sun Java Asp Server<=4.0.2
Sun Java Asp Server=4.0
Remediation
Event History
Jun 4, 2008
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-2404?
CVE-2008-2404 has a high severity rating due to the potential for remote code execution.
2
How do I fix CVE-2008-2404?
To fix CVE-2008-2404, update the Sun Java Active Server Pages software to version 4.0.3 or later.
3
Which versions are affected by CVE-2008-2404?
CVE-2008-2404 affects Sun Java Active Server Pages versions up to and including 4.0.2 and version 4.0.
4
What types of attacks can exploit CVE-2008-2404?
CVE-2008-2404 can be exploited by remote attackers to execute arbitrary code on the affected system.
5
Is the vulnerability CVE-2008-2404 widely known?
Yes, CVE-2008-2404 is a well-known vulnerability due to its significant impact and ease of exploitation.