(Sun Issues fix for Sun Java System Access Manager) Libxml2 Heap Overflow in xmlParseAttValueComplex() Lets Remote Users Execute Arbitrary Code
|
|
SecurityTracker Alert ID: 1022701 |
|
SecurityTracker URL: http://securitytracker.com/id/1022701
|
|
CVE Reference:
CVE-2008-3529
(Links to External Site)
|
Date: Aug 10 2009
|
Impact:
Execution of arbitrary code via network, User access via network
|
Fix Available: Yes Vendor Confirmed: Yes
|
|
Description:
A vulnerability was reported in Libxml2. A remote user can cause arbitrary code to be executed on the target system. Sun Java System Access Manager Policy Agent is affected.
A remote user can create a specially crafted XML entity name that, when processed by the target application using libxml2, will trigger a heap overflow and execute arbitrary code on the target system. The code will run with the privileges of the target application.
The vulnerability resides in the xmlParseAttValueComplex() function in 'parser.c'.
|
Impact:
A remote user can execute arbitrary code on the target system.
|
Solution:
Sun has issued a fix for Sun Java System Access Manager, which is affected by this vulnerability.
* Sun Java System Access Manager Policy Agent 2.2 for Apache 2.0.54 with patch 141243-01 or later
* Sun Java System Access Manager Policy Agent 2.2 for Apache 2.2.9 with patch 141244-01 or later
* Sun Java System Access Manager Policy Agent 2.2 for Domino Server 6.5/7.0/8.0 with patch 141245-01 or later
* Sun Java System Access Manager Policy Agent 2.2 for Microsoft IIS 5.0 with patch 141246-01 or later
* Sun Java System Access Manager Policy Agent 2.2 for Microsoft IIS 6.0 with patch 141247-01 or later
* Sun Java System Access Manager Policy Agent 2.2 for Sun Java System Web Proxy Server 4.0 with patch 141248-01 or later
* Sun Java System Access Manager Policy Agent 2.2 for Sun Java System Web Server 6.1 with patch 141249-01 or later
* Sun Java System Access Manager Policy Agent 2.2 for Sun Java System Web Server 7.0 with patch 141250-01 or later
The Sun advisory is available at:
http://sunsolve.sun.com/search/document.do?assetkey=1-66-265329-1
|
Cause:
Boundary error
|
Underlying OS:
Linux (Any), UNIX (Any)
|
|
Message History:
This archive entry is a follow-up to the message listed below.
|
Source Message Contents
|
Date: Mon, 10 Aug 2009 14:58:16 -0400
Subject: http://sunsolve.sun.com/search/document.do?assetkey=1-66-265329-1
|
265329
Security Vulnerabilities in Sun Java System Access Manager Policy Agent 2.2 (Web Agents) May Cause Denial of Service (DoS)
CVE-2008-3529
CVE-2008-4225
CVE-2008-4226
|
|