Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

Gentoo GLSA-200804-26: Openfire Denial of Service with Normal Severity

gentoo
Calendar Grey April 23, 2008
Dist Gentoo Esm H88
In this bulletin, discover the Openfire Denial of Service vulnerability and countermeasures for Gentoo users. Stay protected!
A design error in Openfire might lead to a Denial of Service.

Summary

Gentoo Linux Security Advisory GLSA 200804-26 https://security.gentoo.org/ Severity: Normal Title: Openfire: Denial of Service Date: April 23, 2008 Bugs: #217234 ID: 200804-26

Synopsis ======= A design error in Openfire might lead to a Denial of Service.
Background ========= Openfire (formerly Wildfire) is a Java implementation of a complete Jabber server.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 net-im/openfire < 3.5.0 >= 3.5.0
========== Openfire's connection manager in the file ConnectionManagerImpl.java cannot handle clients that fail to read messages, and has no limit on their session's send buffer.
Impact ===== Remote authenticated attacke...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround

Related News

Your message here