REDHAT-BUG-767871: High severity red hat jboss web vulnerability
JBoss Web will enter into an infinite loop when a surrogate pair character is placed at the boundary of an internal buffer. A remote attacker could exploit this flaw to trigger a denial-of-service attack against a JBoss Web server that is hosting applications with UTF-8 character encoding enabled, or that will include user-supplied UTF-8 strings in a response.
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-767871?
The severity of REDHAT-BUG-767871 is high as it allows a denial-of-service attack on JBoss Web servers.
How do I fix REDHAT-BUG-767871?
To fix REDHAT-BUG-767871, apply the appropriate patches and updates provided by Red Hat.
Which software is affected by REDHAT-BUG-767871?
REDHAT-BUG-767871 affects Red Hat JBoss Web applications that have UTF-8 character encoding enabled.
Can REDHAT-BUG-767871 be exploited remotely?
Yes, REDHAT-BUG-767871 can be exploited remotely by an attacker to induce a denial-of-service condition.
What is the consequence of exploiting REDHAT-BUG-767871?
Exploiting REDHAT-BUG-767871 can cause an infinite loop affecting JBoss Web, leading to service interruptions.