First published: Mon Jul 27 2009(Updated: )
The Sun Java System (SJS) Access Manager Policy Agent module 2.2 for SJS Web Proxy Server 4.0 allows remote attackers to cause a denial of service (daemon crash) via a GET request.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle Sun Java System Access Manager Policy Agent | =2.2 | |
Oracle Sun Java System Web Proxy Server | =4.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2009-2597 is classified as having a moderate severity due to its potential to cause a denial of service.
To fix CVE-2009-2597, it's recommended to upgrade to a more recent version of the Sun Java System Access Manager Policy Agent.
CVE-2009-2597 affects the Sun Java System Access Manager Policy Agent version 2.2 when used with the Sun Java System Web Proxy Server 4.0.
CVE-2009-2597 is a denial of service vulnerability that allows attackers to crash the daemon by sending a specially crafted GET request.
Yes, there are reports that indicate this vulnerability can be exploited remotely to trigger a denial of service.