First published: Tue Mar 08 2011(Updated: )
Memory leak in org.apache.jasper.runtime.JspWriterImpl.response in the JavaServer Pages (JSP) component in IBM WebSphere Application Server (WAS) before 7.0.0.15 allows remote attackers to cause a denial of service (memory consumption) by accessing a JSP page of an application that is repeatedly stopped and restarted.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
IBM WebSphere Application Server | =5.0.0 | |
IBM WebSphere Application Server | =6.1.0.21 | |
IBM WebSphere Application Server | =6.1.0.31 | |
IBM WebSphere Application Server | =3.0.21 | |
IBM WebSphere Application Server | =6.1.7 | |
IBM WebSphere Application Server | =5.1.0.5 | |
IBM WebSphere Application Server | =6.1 | |
IBM WebSphere Application Server | =7.0.0.2 | |
IBM WebSphere Application Server | =5.0.2.10 | |
IBM WebSphere Application Server | =5.1.1.14 | |
IBM WebSphere Application Server | =5.0.2.5 | |
IBM WebSphere Application Server | =5.0.2.1 | |
IBM WebSphere Application Server | =6.1.0.19 | |
IBM WebSphere Application Server | =5.1.1.2 | |
IBM WebSphere Application Server | =6.1.6 | |
IBM WebSphere Application Server | =3.0.2.1 | |
IBM WebSphere Application Server | =7.0.0.5 | |
IBM WebSphere Application Server | =5.0 | |
IBM WebSphere Application Server | =6.0.2.1 | |
IBM WebSphere Application Server | =6.0.2.5 | |
IBM WebSphere Application Server | =6.0.0.3 | |
IBM WebSphere Application Server | =6.1.0.2 | |
IBM WebSphere Application Server | =5.0.2.11 | |
IBM WebSphere Application Server | =5.1.1 | |
IBM WebSphere Application Server | =3.5 | |
IBM WebSphere Application Server | =5.1.1.6 | |
IBM WebSphere Application Server | =7.0.0.9 | |
IBM WebSphere Application Server | =5.1.0 | |
IBM WebSphere Application Server | =6.0.1.15 | |
IBM WebSphere Application Server | =5.0.1 | |
IBM WebSphere Application Server | =7.0.0.4 | |
IBM WebSphere Application Server | =5.0.2.3 | |
IBM WebSphere Application Server | =6.1.0.33 | |
IBM WebSphere Application Server | =7.0.0.11 | |
IBM WebSphere Application Server | =6.1.0.25 | |
IBM WebSphere Application Server | =6.0.1.3 | |
IBM WebSphere Application Server | =5.0.2.15 | |
IBM WebSphere Application Server | =6.0.2.13 | |
IBM WebSphere Application Server | =6.1.14 | |
IBM WebSphere Application Server | =6.1.0.11 | |
IBM WebSphere Application Server | =6.0.2.9 | |
IBM WebSphere Application Server | =5.1.1.15 | |
IBM WebSphere Application Server | =5.1.1.3 | |
IBM WebSphere Application Server | =6.0.1.11 | |
IBM WebSphere Application Server | =7.0 | |
IBM WebSphere Application Server | =6.0.2.28 | |
IBM WebSphere Application Server | =5.1.1.13 | |
IBM WebSphere Application Server | =7.0.0.8 | |
IBM WebSphere Application Server | =6.0.2.11 | |
IBM WebSphere Application Server | =6.0.2.6 | |
IBM WebSphere Application Server | =5.0.2.12 | |
IBM WebSphere Application Server | =5.1.1.10 | |
IBM WebSphere Application Server | =6.0.2.2 | |
IBM WebSphere Application Server | =3.52 | |
IBM WebSphere Application Server | =6.0.2 | |
IBM WebSphere Application Server | =5.0.2.8 | |
IBM WebSphere Application Server | =3.5.2 | |
IBM WebSphere Application Server | =4.0.3 | |
IBM WebSphere Application Server | =3.0.2.2 | |
IBM WebSphere Application Server | =6.0.2.24 | |
IBM WebSphere Application Server | =4.0.4 | |
IBM WebSphere Application Server | =6.0.1.9 | |
IBM WebSphere Application Server | =6.0.1.17 | |
IBM WebSphere Application Server | =6.0.2.15 | |
IBM WebSphere Application Server | =6.0.2.4 | |
IBM WebSphere Application Server | =6.0.2.32 | |
IBM WebSphere Application Server | =6.0.2.17 | |
IBM WebSphere Application Server | =6.1.0.9 | |
IBM WebSphere Application Server | =3.0 | |
IBM WebSphere Application Server | =6.0.1.2 | |
IBM WebSphere Application Server | <=7.0.0.13 | |
IBM WebSphere Application Server | =2.0 | |
IBM WebSphere Application Server | =5.1.1.17 | |
IBM WebSphere Application Server | =6.0.0.1 | |
IBM WebSphere Application Server | =6.0.2.30 | |
IBM WebSphere Application Server | =6.1.0.0 | |
IBM WebSphere Application Server | =6.1.0.1 | |
IBM WebSphere Application Server | =6.0.2.29 | |
IBM WebSphere Application Server | =4.0.2 | |
IBM WebSphere Application Server | =6.1.5 | |
IBM WebSphere Application Server | =6.1.0.27 | |
IBM WebSphere Application Server | =6.1.0.29 | |
IBM WebSphere Application Server | =5.1.1.7 | |
IBM WebSphere Application Server | =6.0.2.23 | |
IBM WebSphere Application Server | =5.1.0.4 | |
IBM WebSphere Application Server | =3.5.1 | |
IBM WebSphere Application Server | =5.0.2.16 | |
IBM WebSphere Application Server | =5.1.0.2 | |
IBM WebSphere Application Server | =6.1.13 | |
IBM WebSphere Application Server | =6.0.1 | |
IBM WebSphere Application Server | =6.0.2.7 | |
IBM WebSphere Application Server | =3.5.3 | |
IBM WebSphere Application Server | =5.0.2.2 | |
IBM WebSphere Application Server | =7.0.0.6 | |
IBM WebSphere Application Server | =3.0.2.3 | |
IBM WebSphere Application Server | =6.0.0.2 | |
IBM WebSphere Application Server | =6.1.0.7 | |
IBM WebSphere Application Server | =6.0.2.27 | |
IBM WebSphere Application Server | =6.1.1 | |
IBM WebSphere Application Server | =6.1.0.3 | |
IBM WebSphere Application Server | =6.1.0.17 | |
IBM WebSphere Application Server | =5.1.1.1 | |
IBM WebSphere Application Server | =5.0.2.9 | |
IBM WebSphere Application Server | =5.0.2.6 | |
IBM WebSphere Application Server | =5.0.2.13 | |
IBM WebSphere Application Server | =5.1.1.12 | |
IBM WebSphere Application Server | =6.0.2.22 | |
IBM WebSphere Application Server | =6.0.1.5 | |
IBM WebSphere Application Server | =7.0.0.7 | |
IBM WebSphere Application Server | =3.0.2.4 | |
IBM WebSphere Application Server | =5.1.1.8 | |
IBM WebSphere Application Server | =6.0.1.7 | |
IBM WebSphere Application Server | =6.0 | |
IBM WebSphere Application Server | =6.1.0.15 | |
IBM WebSphere Application Server | =6.0.2.3 | |
IBM WebSphere Application Server | =5.0.2.4 | |
IBM WebSphere Application Server | =7.0.0.3 | |
IBM WebSphere Application Server | =5.1.1.16 | |
IBM WebSphere Application Server | =6.1.0.23 | |
IBM WebSphere Application Server | =5.0.2 | |
IBM WebSphere Application Server | =6.0.2.19 | |
IBM WebSphere Application Server | =6.0.1.1 | |
IBM WebSphere Application Server | =5.1.1.9 | |
IBM WebSphere Application Server | =5.0.2.14 | |
IBM WebSphere Application Server | =7.0.0.1 | |
IBM WebSphere Application Server | =6.0.2.25 | |
IBM WebSphere Application Server | =5.1.1.11 | |
IBM WebSphere Application Server | =5.1.0.3 | |
IBM WebSphere Application Server | =6.1.0 | |
IBM WebSphere Application Server | =5.0.2.7 | |
IBM WebSphere Application Server | =4.0.1 | |
IBM WebSphere Application Server | =5.1.1.5 | |
IBM WebSphere Application Server | =5.1.1.4 | |
IBM WebSphere Application Server | =6.1.0.5 | |
IBM WebSphere Application Server | =6.0.1.13 | |
IBM WebSphere Application Server | =3.0.2 | |
IBM WebSphere Application Server | =6.1.0.12 | |
IBM WebSphere Application Server | =6.0.2.31 | |
IBM WebSphere Application Server | =6.1.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-1318 is classified as a medium severity vulnerability due to its potential to cause denial of service.
To fix CVE-2011-1318, upgrade IBM WebSphere Application Server to version 7.0.0.15 or later.
CVE-2011-1318 can lead to a memory leak resulting in service disruption for applications using the affected JSP component.
CVE-2011-1318 affects multiple versions of IBM WebSphere Application Server, including versions 3.0 to 7.0.0.13.
CVE-2011-1318 can be exploited by remote attackers who can access the vulnerable JSP pages.