Vulnerability Description
Apache CXF 2.0.x before 2.0.13, 2.1.x before 2.1.10, and 2.2.x before 2.2.9, as used in Apache ServiceMix, Apache Camel, Apache Chemistry, Apache jUDDI, Apache Geronimo, and other products, does not properly reject DTDs in SOAP messages, which allows remote attackers to read arbitrary files, send HTTP requests to intranet servers, or cause a denial of service (CPU and memory consumption) via a crafted DTD, as demonstrated by an entity declaration in a request to samples/wsdl_first_pure_xml, a similar issue to CVE-2010-1632.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Apache | Cxf | >= 2.0.6, < 2.0.13 |
Related Weaknesses (CWE)
References
- http://geronimo.apache.org/2010/07/21/apache-geronimo-v216-released.htmlVendor Advisory
- http://geronimo.apache.org/21x-security-report.htmlRelease NotesVendor Advisory
- http://geronimo.apache.org/22x-security-report.htmlRelease NotesVendor Advisory
- http://secunia.com/advisories/40969Broken LinkVendor Advisory
- http://secunia.com/advisories/41016Broken LinkVendor Advisory
- http://secunia.com/advisories/41025Broken LinkVendor Advisory
- http://svn.apache.org/repos/asf/cxf/trunk/security/CVE-2010-2076.pdfExploitVendor Advisory
- http://www.listware.net/201006/cxf-users/60160-important-apache-cxf-security-advBroken Link
- http://www.securityfocus.com/bid/42492Broken LinkThird Party AdvisoryVDB Entry
- https://issues.apache.org/jira/browse/GERONIMO-5383Third Party Advisory
- https://lists.apache.org/thread.html/r36e44ffc1a9b365327df62cdfaabe85b9a5637de10Mailing ListPatch
- https://lists.apache.org/thread.html/rc774278135816e7afc943dc9fc78eb0764f2c84a2bMailing ListPatch
- https://lists.apache.org/thread.html/rd49aabd984ed540c8ff7916d4d79405f3fa311d2fdMailing ListPatch
- https://lists.apache.org/thread.html/rec7160382badd3ef4ad017a22f64a266c7188b9ba7Mailing ListPatch
- https://lists.apache.org/thread.html/rfb87e0bf3995e7d560afeed750fac9329ff5f1ad49Mailing ListPatch
FAQ
What is CVE-2010-2076?
CVE-2010-2076 is a vulnerability with a CVSS score of 9.8 (CRITICAL). Apache CXF 2.0.x before 2.0.13, 2.1.x before 2.1.10, and 2.2.x before 2.2.9, as used in Apache ServiceMix, Apache Camel, Apache Chemistry, Apache jUDDI, Apache Geronimo, and other products, does not p...
How severe is CVE-2010-2076?
CVE-2010-2076 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2010-2076?
Check the references section above for vendor advisories and patch information. Affected products include: Apache Cxf.