HIGH · 10.0

CVE-2007-3794

Buffer overflow in Hitachi Cosminexus V4 through V7, Processing Kit for XML before 20070511, Developer's Kit for Java before 20070312, and third-party products that use this software, allows attackers...

Vulnerability Description

Buffer overflow in Hitachi Cosminexus V4 through V7, Processing Kit for XML before 20070511, Developer's Kit for Java before 20070312, and third-party products that use this software, allows attackers to have an unknown impact via certain GIF images, related to use of GIF image processing APIs by a Java application.

CVSS Score

10.0

HIGH

AV:N/AC:L/Au:N/C:C/I:C/A:C
Confidentiality
COMPLETE
Integrity
COMPLETE
Availability
COMPLETE

Affected Products

VendorProductVersions
MicrosoftWindowsAll versions
HitachiCosminexus Application Server05_00_05_00_h
HitachiCosminexus Client06_00_06_00_g
HitachiCosminexus Developer05_00_05_00_h
HitachiCosminexus Server04_00_04_00_a
HitachiCosminexus Studio04_00_04_00_a
HitachiUcosminexus Application Server06_70_06_70_a
HitachiUcosminexus Client06_70_06_70_b
HitachiUcosminexus Developer06_70_06_70_b
HitachiUcosminexus Operator07_00_07_20
HitachiUcosminexus Service Architect07_00_07_20
HitachiUcosminexus Service Platform07_00_07_20
LinuxLinux KernelAll versions
HpHp-UxAll versions
IbmAixAll versions
SunSolarisAll versions

References

FAQ

What is CVE-2007-3794?

CVE-2007-3794 is a vulnerability with a CVSS score of 10.0 (HIGH). Buffer overflow in Hitachi Cosminexus V4 through V7, Processing Kit for XML before 20070511, Developer's Kit for Java before 20070312, and third-party products that use this software, allows attackers...

How severe is CVE-2007-3794?

CVE-2007-3794 has been rated HIGH with a CVSS base score of 10.0/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2007-3794?

Check the references section above for vendor advisories and patch information. Affected products include: Microsoft Windows, Hitachi Cosminexus Application Server, Hitachi Cosminexus Client, Hitachi Cosminexus Developer, Hitachi Cosminexus Server.