受影响系统:
Sun Java System Content Delivery Server 5.0
Sun Java System Content Delivery Server 4.1
Sun Java System Content Delivery Server 4.0
描述:
--------------------------------------------------------------------------------
BUGTRAQ ID: 19705
Sun Java System Content Delivery Server可为移动用户提供可以下载的数据服务。
Sun Java System Content Delivery Server的实现上存在漏洞,本地或远程非特权用户可能利用此漏洞读取系统上任意文件的数据。
<*来源:Sun Alert Notification
链接:
http://secunia.com/advisories/21628/
http://sunsolve.sun.com/search/printfriendly.do?assetkey=1-26-102593-1
*>
建议:
--------------------------------------------------------------------------------
厂商补丁:
Sun
---
Sun已经为此发布了一个安全公告(Sun-Alert-102593)以及相应补丁:
Sun-Alert-102593:Security Vulnerability in the Sun Java System Content Delivery Server May Allow Unauthorized Data Access
链接:
http://sunsolve.sun.com/search/printfriendly.do?assetkey=1-26-102593-1