Apache Santuario XML Security for JAVA XML Signature CVE-2013-2172 Security Bypass Vulnerability

Bugtraq ID: 60846
Class: Design Error
CVE: CVE-2013-2172
Remote: Yes
Local: No
Published: Jun 25 2013 12:00AM
Updated: Nov 10 2014 12:57AM
Credit: James Forshaw, Context Information Security
Vulnerable: Ubuntu Ubuntu Linux 10.04 sparc
Ubuntu Ubuntu Linux 10.04 powerpc
Ubuntu Ubuntu Linux 10.04 i386
Ubuntu Ubuntu Linux 10.04 ARM
Ubuntu Ubuntu Linux 10.04 amd64
Red Hat JBoss Enterprise Web Platform 5 EL6
Red Hat JBoss Enterprise Web Platform 5 EL5
Red Hat JBoss Enterprise Web Platform 5 EL4
Red Hat JBoss Enterprise Application Platform 5 EL6
Red Hat JBoss Enterprise Application Platform 5 EL5
Red Hat JBoss Enterprise Application Platform 5 EL4
Oracle Glassfish Server 3.0.1
Oracle Glassfish Server 2.1.1
Debian Linux 6.0 sparc
Debian Linux 6.0 s/390
Debian Linux 6.0 powerpc
Debian Linux 6.0 mips
Debian Linux 6.0 ia-64
Debian Linux 6.0 ia-32
Debian Linux 6.0 arm
Debian Linux 6.0 amd64
Not Vulnerable:


 

Privacy Statement
Copyright 2010, SecurityFocus