int(5304)

Vulnerability Bulletins


Vulnerabilidad en el componente Address Book de Sun Java System Communications Express

Vulnerability classification

Property Value
Confidence level official+tested
Impact Confidencialidad
Dificulty Experto
Required attacker level Acceso remoto con cuenta

System information

Property Value
Affected manufacturer Comercial Software
Affected software Sun Java System Communications Express 6.3
Sun Java System Communications Express 6 2005Q4(6.2)

Description

Se ha descubierto una vulnerabilidad en Sun Java System Communications Express 6.3 y 6.2.

Un atacante remoto podría comprometer la confidencialidad mediante métodos no especificados relativos a Address Book.

Solution



Actualización de software

Sun
Sun Java System Communications Express 6.3 / SPARC / patch 122793-31
Sun Java System Communications Express 6.3 / x86 / patch 122794-31
Sun Java System Communications Express 6.3 / Linux / patch 122795-31
Sun Java System Communications Express 6 2005Q4(6.2) / SPARC / x86 / Linux
http://sunsolve.sun.com/pub-cgi/show.pl?target=patchpage

Standar resources

Property Value
CVE CVE-2010-0885
BID

Other resources

Sun Alert Notification
http://sunsolve.sun.com/search/document.do?assetkey=1-77-1022024.1-1

Version history

Version Comments Date
1.0 Aviso emitido 2010-05-27
Ministerio de Defensa
CNI
CCN
CCN-CERT