CVE-2011-1322: Medium severity ibm websphere application server feature pack for web services vulnerability
The SOAP with Attachments API for Java (SAAJ) implementation in the Web Services component in IBM WebSphere Application Server (WAS) 6.1.0.x before 6.1.0.37 and 7.x before 7.0.0.15 allows remote attackers to cause a denial of service (memory consumption) via encrypted SOAP messages.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-1322?
CVE-2011-1322 has a severity level that can cause a denial of service due to memory consumption issues.
How do I fix CVE-2011-1322?
To fix CVE-2011-1322, upgrade to IBM WebSphere Application Server version 6.1.0.37 or 7.0.0.15 or later.
What software versions are affected by CVE-2011-1322?
CVE-2011-1322 affects IBM WebSphere Application Server versions 6.1.0.x prior to 6.1.0.37 and 7.x prior to 7.0.0.15.
What kind of attack can be executed using CVE-2011-1322?
An attacker can exploit CVE-2011-1322 to send encrypted SOAP messages leading to remote denial of service.
Is CVE-2011-1322 exploitable remotely?
Yes, CVE-2011-1322 is exploitable remotely by attackers due to the nature of the SOAP message processing.