CVE-2010-2076
Apache CXF 2.0.x before 2.0.13, 2.1.x before 2.1.10, and 2.2.x before 2.2.9, as used in Apache ServiceMix, Apache Camel, Apache Chemistry, Apache jUDDI, Apache Geronimo, and other products, does not properly reject DTDs in SOAP messages, which allows remote attackers to read arbitrary files, send HTTP requests to intranet servers, or cause a denial of service (CPU and memory consumption) via a crafted DTD, as demonstrated by an entity declaration in a request to samples/wsdl_first_pure_xml, a similar issue to CVE-2010-1632.
Published
2010-08-19T18:00:02.937
Last Modified
2025-04-11T00:51:21.963
Status
Deferred
Source
[email protected]
Severity
CVSSv3.1: 9.8 (CRITICAL)
CVSSv2 Vector
AV:N/AC:L/Au:N/C:P/I:P/A:P
- Access Vector: NETWORK
- Access Complexity: LOW
- Authentication: NONE
- Confidentiality Impact: PARTIAL
- Integrity Impact: PARTIAL
- Availability Impact: PARTIAL
Exploitability Score
10.0
Impact Score
6.4
Weaknesses
Affected Vendors & Products
Type |
Vendor |
Product |
Version/Range |
Vulnerable? |
Application |
apache
|
cxf
|
< 2.0.13 |
Yes
|
Application |
apache
|
cxf
|
< 2.1.10 |
Yes
|
Application |
apache
|
cxf
|
< 2.2.9 |
Yes
|
References
-
http://geronimo.apache.org/2010/07/21/apache-geronimo-v216-released.html
Vendor Advisory
([email protected])
-
http://geronimo.apache.org/21x-security-report.html
Release Notes, Vendor Advisory
([email protected])
-
http://geronimo.apache.org/22x-security-report.html
Release Notes, Vendor Advisory
([email protected])
-
http://secunia.com/advisories/40969
Broken Link, Vendor Advisory
([email protected])
-
http://secunia.com/advisories/41016
Broken Link, Vendor Advisory
([email protected])
-
http://secunia.com/advisories/41025
Broken Link, Vendor Advisory
([email protected])
-
http://svn.apache.org/repos/asf/cxf/trunk/security/CVE-2010-2076.pdf
Exploit, Vendor Advisory
([email protected])
-
http://www.listware.net/201006/cxf-users/60160-important-apache-cxf-security-advisory-cve-2010-2076.html
Broken Link
([email protected])
-
http://www.securityfocus.com/bid/42492
Broken Link, Third Party Advisory, VDB Entry
([email protected])
-
https://issues.apache.org/jira/browse/GERONIMO-5383
Third Party Advisory
([email protected])
-
https://lists.apache.org/thread.html/r36e44ffc1a9b365327df62cdfaabe85b9a5637de102cea07d79b2dbf%40%3Ccommits.cxf.apache.org%3E
Mailing List, Patch
([email protected])
-
https://lists.apache.org/thread.html/rc774278135816e7afc943dc9fc78eb0764f2c84a2b96470a0187315c%40%3Ccommits.cxf.apache.org%3E
Mailing List, Patch
([email protected])
-
https://lists.apache.org/thread.html/rd49aabd984ed540c8ff7916d4d79405f3fa311d2fdbcf9ed307839a6%40%3Ccommits.cxf.apache.org%3E
Mailing List, Patch
([email protected])
-
https://lists.apache.org/thread.html/rec7160382badd3ef4ad017a22f64a266c7188b9ba71394f0d321e2d4%40%3Ccommits.cxf.apache.org%3E
Mailing List, Patch
([email protected])
-
https://lists.apache.org/thread.html/rfb87e0bf3995e7d560afeed750fac9329ff5f1ad49da365129b7f89e%40%3Ccommits.cxf.apache.org%3E
Mailing List, Patch
([email protected])
-
https://lists.apache.org/thread.html/rff42cfa5e7d75b7c1af0e37589140a8f1999e578a75738740b244bd4%40%3Ccommits.cxf.apache.org%3E
Mailing List, Patch
([email protected])
-
http://geronimo.apache.org/2010/07/21/apache-geronimo-v216-released.html
Vendor Advisory
(af854a3a-2127-422b-91ae-364da2661108)
-
http://geronimo.apache.org/21x-security-report.html
Release Notes, Vendor Advisory
(af854a3a-2127-422b-91ae-364da2661108)
-
http://geronimo.apache.org/22x-security-report.html
Release Notes, Vendor Advisory
(af854a3a-2127-422b-91ae-364da2661108)
-
http://secunia.com/advisories/40969
Broken Link, Vendor Advisory
(af854a3a-2127-422b-91ae-364da2661108)
-
http://secunia.com/advisories/41016
Broken Link, Vendor Advisory
(af854a3a-2127-422b-91ae-364da2661108)
-
http://secunia.com/advisories/41025
Broken Link, Vendor Advisory
(af854a3a-2127-422b-91ae-364da2661108)
-
http://svn.apache.org/repos/asf/cxf/trunk/security/CVE-2010-2076.pdf
Exploit, Vendor Advisory
(af854a3a-2127-422b-91ae-364da2661108)
-
http://www.listware.net/201006/cxf-users/60160-important-apache-cxf-security-advisory-cve-2010-2076.html
Broken Link
(af854a3a-2127-422b-91ae-364da2661108)
-
http://www.securityfocus.com/bid/42492
Broken Link, Third Party Advisory, VDB Entry
(af854a3a-2127-422b-91ae-364da2661108)
-
https://issues.apache.org/jira/browse/GERONIMO-5383
Third Party Advisory
(af854a3a-2127-422b-91ae-364da2661108)
-
https://lists.apache.org/thread.html/r36e44ffc1a9b365327df62cdfaabe85b9a5637de102cea07d79b2dbf%40%3Ccommits.cxf.apache.org%3E
Mailing List, Patch
(af854a3a-2127-422b-91ae-364da2661108)
-
https://lists.apache.org/thread.html/rc774278135816e7afc943dc9fc78eb0764f2c84a2b96470a0187315c%40%3Ccommits.cxf.apache.org%3E
Mailing List, Patch
(af854a3a-2127-422b-91ae-364da2661108)
-
https://lists.apache.org/thread.html/rd49aabd984ed540c8ff7916d4d79405f3fa311d2fdbcf9ed307839a6%40%3Ccommits.cxf.apache.org%3E
Mailing List, Patch
(af854a3a-2127-422b-91ae-364da2661108)
-
https://lists.apache.org/thread.html/rec7160382badd3ef4ad017a22f64a266c7188b9ba71394f0d321e2d4%40%3Ccommits.cxf.apache.org%3E
Mailing List, Patch
(af854a3a-2127-422b-91ae-364da2661108)
-
https://lists.apache.org/thread.html/rfb87e0bf3995e7d560afeed750fac9329ff5f1ad49da365129b7f89e%40%3Ccommits.cxf.apache.org%3E
Mailing List, Patch
(af854a3a-2127-422b-91ae-364da2661108)
-
https://lists.apache.org/thread.html/rff42cfa5e7d75b7c1af0e37589140a8f1999e578a75738740b244bd4%40%3Ccommits.cxf.apache.org%3E
Mailing List, Patch
(af854a3a-2127-422b-91ae-364da2661108)