tomcat5-5.5.23-0jpp.17.0.1.AXS3
エラータID: AXSA:2011-91:01
リリース日:
2011/03/11 Friday - 16:12
題名:
tomcat5-5.5.23-0jpp.17.0.1.AXS3
影響のあるチャネル:
Asianux Server 3 for x86_64
Asianux Server 3 for x86
Severity:
High
Description:
以下項目について対処しました。<br />
<br />
[Security Fix]<br />
- Java Runtime Environment (JRE) の Double.parseDouble メソッドには巧妙に細工された文字列によって, リモートの攻撃者がサービス拒否を引き起こす脆弱性があります。(CVE-2010-4476)<br />
<br />
一部CVEの翻訳文はJVNからの引用になります。<br />
http://jvndb.jvn.jp/<br />
解決策:
パッケージをアップデートしてください。
CVE:
CVE-2010-4476
The Double.parseDouble method in Java Runtime Environment (JRE) in Oracle Java SE and Java for Business 6 Update 23 and earlier, 5.0 Update 27 and earlier, and 1.4.2_29 and earlier, as used in OpenJDK, Apache, JBossweb, and other products, allows remote attackers to cause a denial of service via a crafted string that triggers an infinite loop of estimations during conversion to a double-precision binary floating-point number, as demonstrated using 2.2250738585072012e-308.
The Double.parseDouble method in Java Runtime Environment (JRE) in Oracle Java SE and Java for Business 6 Update 23 and earlier, 5.0 Update 27 and earlier, and 1.4.2_29 and earlier, as used in OpenJDK, Apache, JBossweb, and other products, allows remote attackers to cause a denial of service via a crafted string that triggers an infinite loop of estimations during conversion to a double-precision binary floating-point number, as demonstrated using 2.2250738585072012e-308.
追加情報:
N/A
ダウンロード:
SRPMS
- tomcat5-5.5.23-0jpp.17.0.1.AXS3.src.rpm
MD5: e81e10d316ef153678b567166edec9d4
SHA-256: 5d5ae720dd7985b5b04e227029e8526db7437518f8a1e7bccbc04f606f97f90f
Size: 4.73 MB
Asianux Server 3 for x86
- tomcat5-5.5.23-0jpp.17.0.1.AXS3.i386.rpm
MD5: 6187817b565338ecde72406c72739d96
SHA-256: 370f7ca9c17aaa97dd25441279ae237cf8ccf8bdbfdd8ac1ccd8ed8972c45da8
Size: 342.08 kB - tomcat5-admin-webapps-5.5.23-0jpp.17.0.1.AXS3.i386.rpm
MD5: 3fecf1870557623042ca8af28fdf1408
SHA-256: 83095256bb680337999c9da540634e399227c6d6642a9ef3c4cf7b7a44ba757b
Size: 3.02 MB - tomcat5-common-lib-5.5.23-0jpp.17.0.1.AXS3.i386.rpm
MD5: 7716fc33710c6fda0c10546e63a22d44
SHA-256: ab75996b619567ad8c16be5c9b59b1c1e368c149d7a9db0242d0685850b52e1d
Size: 200.64 kB - tomcat5-jasper-5.5.23-0jpp.17.0.1.AXS3.i386.rpm
MD5: 777523f592bd2720fd46f5f3a1b1354a
SHA-256: 0545ef5d07e04013cdbc91fd4fe4bae6a46465331af254f7705113210a997db1
Size: 0.96 MB - tomcat5-jasper-javadoc-5.5.23-0jpp.17.0.1.AXS3.i386.rpm
MD5: 1c131f371aced0494ffc259fa299fc19
SHA-256: a09b0b13f188e963a28a2aceecb5ad648732c20d73438718e460342a86227595
Size: 281.60 kB - tomcat5-jsp-2.0-api-5.5.23-0jpp.17.0.1.AXS3.i386.rpm
MD5: 49b3fe169963f4ba5c5545fd67dec856
SHA-256: 88cf4853f46ed0cedcf2a63f581a964310d50c44484417504cf1ffc9338661a7
Size: 97.22 kB - tomcat5-jsp-2.0-api-javadoc-5.5.23-0jpp.17.0.1.AXS3.i386.rpm
MD5: 9ef68467de566c116a35b4d769cc7bc3
SHA-256: 49cd9a9f2394731afa5eb5eabacf3e9e95d06638acd283392b51f21a25f058c6
Size: 149.46 kB - tomcat5-server-lib-5.5.23-0jpp.17.0.1.AXS3.i386.rpm
MD5: db7b00b2605031ab2dd48bcee0578379
SHA-256: 4fb243b780f37c42d0e9a23a932be5d8d9f82cecc224cdcaa8336e43f1bc04b9
Size: 3.60 MB - tomcat5-servlet-2.4-api-5.5.23-0jpp.17.0.1.AXS3.i386.rpm
MD5: 23cb49b836859d55180af59ddb6ccd7a
SHA-256: f7abe43fc05dfb831b3f5379c614068e3fd60096dcbc716c263cf0dca8895cf9
Size: 154.10 kB - tomcat5-servlet-2.4-api-javadoc-5.5.23-0jpp.17.0.1.AXS3.i386.rpm
MD5: e37eac0a35a05cfdde7753aaf671aab2
SHA-256: 2ee701d8f04ce57cf846a39a522e6b3eb381adc2091613b6a31dcad5df8e87d0
Size: 154.71 kB - tomcat5-webapps-5.5.23-0jpp.17.0.1.AXS3.i386.rpm
MD5: 6d47de32f94b6124cb83b51e7c2b891e
SHA-256: b2faabd012d7845ddb8b74ea8a95ff1e6ba660cade2c638cd4d15198e4791dc7
Size: 1.24 MB
Asianux Server 3 for x86_64
- tomcat5-5.5.23-0jpp.17.0.1.AXS3.x86_64.rpm
MD5: e784c40b48ad1a1960a3969a579448af
SHA-256: bd1767835473827f4fc5eede1e15a39408fb46b618b0356943cbff485b86f2bc
Size: 364.40 kB - tomcat5-admin-webapps-5.5.23-0jpp.17.0.1.AXS3.x86_64.rpm
MD5: 246ce5fe611306da898235fcb30ac739
SHA-256: 1de83d9bb63a9b10d9fd54e6592a354c91ec427f922d651959f8bd83318a2946
Size: 3.44 MB - tomcat5-common-lib-5.5.23-0jpp.17.0.1.AXS3.x86_64.rpm
MD5: 8ef17e35348d53127de1090704766e4d
SHA-256: 42a7328ed33c0c3b8aebf0fc5e299c5de6f84275050e9f02eddca25b21311a2f
Size: 224.96 kB - tomcat5-jasper-5.5.23-0jpp.17.0.1.AXS3.x86_64.rpm
MD5: 907183c5d70d66470ad06916893960d9
SHA-256: 64a38ff264456f2199b35d7dcf8f3fe56768360e463307f2fffd0d33d8aa5fd2
Size: 1.09 MB - tomcat5-jasper-javadoc-5.5.23-0jpp.17.0.1.AXS3.x86_64.rpm
MD5: 851e0066842718bd27af532e7ce40342
SHA-256: ceccc65313a751ed4d25a8a81bab3d0342ceff7282097e4922104f6423732713
Size: 281.55 kB - tomcat5-jsp-2.0-api-5.5.23-0jpp.17.0.1.AXS3.x86_64.rpm
MD5: 1e35547cb6bbc337b36728df20b3e4f8
SHA-256: 27ab71feb66d5c80fbfc0e14ad96ebae799578e6177632e9fdbed1ddbadee67c
Size: 103.53 kB - tomcat5-jsp-2.0-api-javadoc-5.5.23-0jpp.17.0.1.AXS3.x86_64.rpm
MD5: 73be24b1415623038ee30dd96a0579ce
SHA-256: 57fb24f01132828b85748502c4d874a0ec9ad4ac3cf213ec9f9e85261c514034
Size: 149.40 kB - tomcat5-server-lib-5.5.23-0jpp.17.0.1.AXS3.x86_64.rpm
MD5: 04b7f654060ed2b87141e05db3e75ebc
SHA-256: 9c7324cc1c4b47ac196ec9c45c89b5113c5f4aabb1544a577a810eb83bc2c2b4
Size: 4.07 MB - tomcat5-servlet-2.4-api-5.5.23-0jpp.17.0.1.AXS3.x86_64.rpm
MD5: b5c64be2e0936650e0a6eca2a7f55d01
SHA-256: 0005a35555ec64d23e5537bc43222bd87a044de011ecbc6ba1e0f2cb7418290d
Size: 163.44 kB - tomcat5-servlet-2.4-api-javadoc-5.5.23-0jpp.17.0.1.AXS3.x86_64.rpm
MD5: 4bfb9fab97a89215ad6f72d769cddb20
SHA-256: 10cecbaefcea5a880bcb0aae585ce9e8f6c676026c6064c67c210588f8f4b9bc
Size: 154.62 kB - tomcat5-webapps-5.5.23-0jpp.17.0.1.AXS3.x86_64.rpm
MD5: 2855bdaf7c0e0c32dd2952b948da69a1
SHA-256: d7eeab0bba5d4735664a11f416dcd74ad2a5b0af348a03a51d46afc2ce602914
Size: 1.24 MB