Denial of Service Vulnerability in Sun Java System Directory Server
CVE-2009-4442

Currently unrated

Key Information:

Vendor
Oracle
Vendor
CVE Published:
28 December 2009

Summary

The Directory Proxy Server (DPS) in the Sun Java System Directory Server Enterprise Edition versions 6.0 to 6.3.1 contains a flaw in the implementation of the max-client-connections configuration. This vulnerability allows remote attackers to exhaust connection slots by establishing multiple connections without performing any operations. As a result, legitimate users may be denied access, leading to potential disruptions in service.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.