exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New

Cosminexus XML Processor Denial Of Service

Cosminexus XML Processor Denial Of Service
Posted Nov 5, 2009
Site hitachi.co.jp

The Cosminexus XML processor suffers from a remote denial of service vulnerability when receiving an invalid SOAP message.

tags | advisory, remote, denial of service
SHA-256 | 69bee83c0ee9e888ce02c4291882f7a5428cc4b4f0eac82f075ca86f3638b428

Cosminexus XML Processor Denial Of Service

Change Mirror Download
A vulnerability to Denial of Service (DoS) attacks was found in Cosminexus XML Processor.
Malicious remote users might exploit this vulnerability to disrupt services.
Vulnerability ID

HS09-017
Vulnerability description

When Cosminexus XML Processor, which is a component product of the following products, receives invalid XML data as a SOAP message, services are disrupted.

- Cosminexus V7 and V8

* uCosminexus Application Server Enterprise
* uCosminexus Application Server Standard
* uCosminexus Service Platform
* uCosminexus Developer Standard
* uCosminexus Developer Professional
* uCosminexus Service Architect
* uCosminexus Operator
* uCosminexus Client
* uCosminexus Navigation Platform(*1)
* uCosminexus Navigation Platform - User License(*1)
* uCosminexus Navigation Platform - Authoring License(*1)
* uCosminexus Navigation Developer(*1)

Affected products and versions are listed below. Please upgrade your version to the appropriate version.

*1
uCosminexus Application Server Standard and/or uCosminexus Developer Professional contained in these products are affected.

Affected products

The information is organized under the following headings:
(Example)
Product name: Gives the name of the affected product.

Version:

Platform
Gives the affected version.

- Cosminexus V8
Product name: uCosminexus Application Server Enterprise
Product name: uCosminexus Application Server Standard

Version(s):

Windows
08-00 to 08-00-04
Linux
08-00 to 08-00-01
Linux(IPF)
08-00
AIX
08-00 to 08-00-01
HP-UX(IPF)
08-00
Solaris
08-00

Product name: uCosminexus Service Platform

Version(s):

Windows
08-00 to 08-00-04, 08-10
Linux
08-00 to 08-00-01, 08-10
Linux(IPF)
08-00, 08-10
AIX
08-00, 08-10
HP-UX(IPF)
08-00, 08-10

Product name: uCosminexus Developer Standard
Product name: uCosminexus Developer Professional
Product name: uCosminexus Client

Version(s):

Windows
08-00 to 08-00-04

Product name: uCosminexus Service Architect

Version(s):

Windows
08-00 to 08-00-04, 08-10

Product name: uCosminexus Navigation Platform
Product name: uCosminexus Navigation Platform - User License
Product name: uCosminexus Navigation Platform - Authoring License
Product name: uCosminexus Navigation Developer

Version(s):

Windows
08-00, 08-01

- Cosminexus V7
Product name: uCosminexus Application Server Enterprise
Product name: uCosminexus Application Server Standard

Version(s):

Windows
07-00 to 07-00-03, 07-10 to 07-10-01, 07-20 to 07-20-01
Linux
07-00 to 07-00-01, 07-10
Linux(IPF)
07-10 to 07-10-01
AIX
07-00, 07-10
HP-UX
07-10
HP-UX(IPF)
07-00, 07-10 to 07-10-01
Solaris
07-00

Product name: uCosminexus Service Platform

Version(s):

Windows
07-00 to 07-00-03, 07-10 to 07-10-01, 07-20 to 07-20-01
Linux
07-00, 07-10
AIX
07-10

Product name: uCosminexus Developer Standard
Product name: uCosminexus Developer Professional
Product name: uCosminexus Service Architect
Product name: uCosminexus Client

Version(s):

Windows
07-00 to 07-00-03, 07-10 to 07-10-01, 07-20 to 07-20-01

Product name: uCosminexus Operator

Version(s):

Windows
07-00 to 07-00-03, 07-10 to 07-10-01, 07-20

Fixed products

The information is organized under the following headings:
(Example)
Product name: Gives the name of the fixed product.

Version:

Platform
Gives the fixed version, and release date.

Scheduled version(s):

Platform
Gives the fixed version scheduled to be released.

- Cosminexus V8
Product name: uCosminexus Application Server Enterprise
Product name: uCosminexus Application Server Standard
Product name: uCosminexus Service Platform
Product name: uCosminexus Developer Standard
Product name: uCosminexus Developer Professional
Product name: uCosminexus Service Architect
Product name: uCosminexus Client

Fixed component product name(*2):

* Cosminexus XML Processor

Fixed component product version(s)(*2):

Windows
08-00-02 September 7, 2009
Linux
08-00-02 August 7, 2009

Scheduled version(s):

Linux(IPF)
08-00-01
AIX
08-00-01
HP-UX(IPF)
08-00-01
Solaris
08-00-01

Product name: uCosminexus Navigation Platform
Product name: uCosminexus Navigation Platform - User License
Product name: uCosminexus Navigation Platform - Authoring License
Product name: uCosminexus Navigation Developer

Scheduled version(s):

Windows
08-10

- Cosminexus V7
Product name: uCosminexus Application Server Enterprise
Product name: uCosminexus Application Server Standard
Product name: uCosminexus Service Platform
Product name: uCosminexus Developer Standard
Product name: uCosminexus Developer Professional
Product name: uCosminexus Service Architect
Product name: uCosminexus Operator
Product name: uCosminexus Client

Fixed component product name(*2):

* Cosminexus XML Processor

Fixed component product version(s)(*2):

Windows
07-00-03 October 15, 2007
Linux
07-00-02 October 15, 2007
Linux(IPF)
07-00-01 October 15, 2007
AIX
07-00-01 October 15, 2007
HP-UX
07-00-01 October 15, 2007
HP-UX(IPF)
07-00-01 October 15, 2007
Solaris
07-00-02 October 15, 2007

For details on the fixed products, contact your Hitachi support service representative.

*2
Cosminexus XML Processor, which is a component product, has been fixed. Apply the fixed version of the component product.


Login or Register to add favorites

File Archive:

December 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Dec 1st
    0 Files
  • 2
    Dec 2nd
    41 Files
  • 3
    Dec 3rd
    25 Files
  • 4
    Dec 4th
    0 Files
  • 5
    Dec 5th
    0 Files
  • 6
    Dec 6th
    0 Files
  • 7
    Dec 7th
    0 Files
  • 8
    Dec 8th
    0 Files
  • 9
    Dec 9th
    0 Files
  • 10
    Dec 10th
    0 Files
  • 11
    Dec 11th
    0 Files
  • 12
    Dec 12th
    0 Files
  • 13
    Dec 13th
    0 Files
  • 14
    Dec 14th
    0 Files
  • 15
    Dec 15th
    0 Files
  • 16
    Dec 16th
    0 Files
  • 17
    Dec 17th
    0 Files
  • 18
    Dec 18th
    0 Files
  • 19
    Dec 19th
    0 Files
  • 20
    Dec 20th
    0 Files
  • 21
    Dec 21st
    0 Files
  • 22
    Dec 22nd
    0 Files
  • 23
    Dec 23rd
    0 Files
  • 24
    Dec 24th
    0 Files
  • 25
    Dec 25th
    0 Files
  • 26
    Dec 26th
    0 Files
  • 27
    Dec 27th
    0 Files
  • 28
    Dec 28th
    0 Files
  • 29
    Dec 29th
    0 Files
  • 30
    Dec 30th
    0 Files
  • 31
    Dec 31st
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2024 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close