CVE-2010-0272: Buffer Overflow
Heap-based buffer overflow in Sun Java System Web Server 7.0 Update 6 on Linux allows remote attackers to discover process memory locations via crafted data to TCP port 80, as demonstrated by the vdsjws2 module in VulnDisco. NOTE: as of 20100106, this disclosure has no actionable information. However, because the VulnDisco author is a reliable researcher, the issue is being assigned a CVE identifier for tracking purposes.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-0272?
CVE-2010-0272 is classified as a high severity vulnerability due to its potential for remote exploitation and memory disclosure.
How do I fix CVE-2010-0272?
To fix CVE-2010-0272, it is recommended to upgrade Sun Java System Web Server to a version that is not affected, if available.
What is the impact of CVE-2010-0272?
The impact of CVE-2010-0272 includes the possibility for remote attackers to access sensitive process memory locations.
Who is affected by CVE-2010-0272?
CVE-2010-0272 primarily affects users of Sun Java System Web Server version 7.0 Update 6 on Linux.
What type of attack does CVE-2010-0272 enable?
CVE-2010-0272 enables attackers to conduct heap-based buffer overflow attacks that can lead to memory disclosure.