Spring框架拒绝服务漏洞(CVE-2018-15756)

Spring框架拒绝服务漏洞(CVE-2018-15756)


发布日期:2019-06-10
更新日期:2019-06-11

受影响系统:

pivotal Spring Framework 5.1
pivotal Spring Framework 5.0.9
pivotal Spring Framework 5.0.6
pivotal Spring Framework 5.0.5
pivotal Spring Framework 5.0.4
pivotal Spring Framework 5.0.3
pivotal Spring Framework 5.0.2
pivotal Spring Framework 5.0.1
pivotal Spring Framework 4.3.19
pivotal Spring Framework 4.3.18
pivotal Spring Framework 4.3.17
pivotal Spring Framework 4.3.16
pivotal Spring Framework 4.3.15
pivotal Spring Framework 4.3.14
pivotal Spring Framework 4.3
pivotal Spring Framework 4.2.2
pivotal Spring Framework 4.2.1
pivotal Spring Framework 4.2
Retail Order Broker 5.2
Oracle Retail Order Broker 5.1
Oracle Retail Order Broker 16.0
Oracle Retail Order Broker 15.0
Oracle Retail Invoice Matching 14.1
Oracle Retail Invoice Matching 14.0
Oracle Retail Invoice Matching 13.2
Oracle Retail Invoice Matching 13.1
Oracle Retail Invoice Matching 13.0
Oracle Retail Invoice Matching 12.0

不受影响系统:

pivotal Spring Framework 5.1.1
pivotal Spring Framework 5.0.10
pivotal Spring Framework 4.3.20

描述:



厂商补丁:

Oracle
------
Oracle已经为此发布了一个安全公告(CVE-2018-15756)以及相应补丁:
CVE-2018-15756:Oracle Critical Patch Update Advisory - April 2019
链接:https://www.oracle.com/technetwork/security-advisory/cpuapr2019-5072813.html

补丁下载:



pivotal
-------
pivotal已经为此发布了一个安全公告(CVE-2018-15756)以及相应补丁:
CVE-2018-15756:DoS Attack via Range Requests
链接:https://pivotal.io/security/cve-2018-15756

猜你喜欢

转载自www.linuxidc.com/Linux/2019-06/159086.htm