First published: Wed Jun 18 2008(Updated: )
Unspecified vulnerability in cshttpd in Sun Java System Calendar Server 6 and 6.3, and Sun ONE Calendar Server 6.0, when access logging (aka service.http.commandlog.all) is enabled, allows remote attackers to cause a denial of service (daemon crash) via unspecified vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle Communications Calendar Server | =6-2004q2 | |
Oracle Communications Calendar Server | =6-2005q1 | |
Oracle Communications Calendar Server | =6-2005q4 | |
Oracle Communications Calendar Server | =6.3 | |
Oracle Communications Calendar Server | =6.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-2749 is considered a high severity vulnerability due to its potential to cause a denial of service.
To mitigate CVE-2008-2749, disable access logging in the affected Sun Java System Calendar Server versions.
CVE-2008-2749 affects Sun Java System Calendar Server versions 6.0, 6.3, and certain 2004 and 2005 quarterly releases.
The potential impacts of CVE-2008-2749 include daemon crashes leading to service interruptions.
CVE-2008-2749 was first reported in 2008.