BEA Systems WebLogic Server and Express Null Character DOS Device Denial of Service Vulnerability
BID:4646
Info
BEA Systems WebLogic Server and Express Null Character DOS Device Denial of Service Vulnerability
| Bugtraq ID: | 4646 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Apr 30 2002 12:00AM |
| Updated: | Apr 30 2002 12:00AM |
| Credit: | Discovery of this issue is credited to Peter Gründl <[email protected]>. |
| Vulnerable: |
BEA Systems WebLogic Server for Win32 7.0 SP 1 BEA Systems WebLogic Server for Win32 7.0 BEA Systems WebLogic Server for Win32 6.0 SP 2 BEA Systems WebLogic Server for Win32 6.0 SP 1 BEA Systems WebLogic Server for Win32 6.0 BEA Systems WebLogic Server for Win32 5.1 SP 9 BEA Systems WebLogic Server for Win32 5.1 SP 8 BEA Systems WebLogic Server for Win32 5.1 SP 7 BEA Systems WebLogic Server for Win32 5.1 SP 6 BEA Systems WebLogic Server for Win32 5.1 SP 5 BEA Systems WebLogic Server for Win32 5.1 SP 4 BEA Systems WebLogic Server for Win32 5.1 SP 3 BEA Systems WebLogic Server for Win32 5.1 SP 2 BEA Systems WebLogic Server for Win32 5.1 SP 12 BEA Systems WebLogic Server for Win32 5.1 SP 11 BEA Systems WebLogic Server for Win32 5.1 SP 10 BEA Systems WebLogic Server for Win32 5.1 SP 1 BEA Systems WebLogic Server for Win32 5.1 BEA Systems Weblogic Server 7.0 SP 1 BEA Systems Weblogic Server 7.0 BEA Systems Weblogic Server 6.1 SP 3 BEA Systems Weblogic Server 6.1 SP 2 BEA Systems Weblogic Server 6.1 SP 1 BEA Systems Weblogic Server 6.1 BEA Systems Weblogic Server 6.0 SP 2 BEA Systems Weblogic Server 6.0 SP 1 BEA Systems Weblogic Server 6.0 BEA Systems Weblogic Server 5.1 SP 9 BEA Systems Weblogic Server 5.1 SP 8 BEA Systems Weblogic Server 5.1 SP 7 BEA Systems Weblogic Server 5.1 SP 6 BEA Systems Weblogic Server 5.1 SP 5 BEA Systems Weblogic Server 5.1 SP 4 BEA Systems Weblogic Server 5.1 SP 3 BEA Systems Weblogic Server 5.1 SP 2 BEA Systems Weblogic Server 5.1 SP 12 BEA Systems Weblogic Server 5.1 SP 11 BEA Systems Weblogic Server 5.1 SP 10 BEA Systems Weblogic Server 5.1 SP 1 BEA Systems Weblogic Server 5.1 BEA Systems Weblogic Server 4.5.2 SP 2 BEA Systems Weblogic Server 4.5.2 SP 1 BEA Systems Weblogic Server 4.5.2 BEA Systems Weblogic Server 4.5.1 SP 15 BEA Systems Weblogic Server 4.5.1 BEA Systems WebLogic Express for Win32 7.0 SP 1 BEA Systems WebLogic Express for Win32 7.0 BEA Systems WebLogic Express for Win32 6.1 SP 3 BEA Systems WebLogic Express for Win32 6.1 SP 2 BEA Systems WebLogic Express for Win32 6.1 SP 1 BEA Systems WebLogic Express for Win32 6.1 BEA Systems WebLogic Express for Win32 6.0 SP 2 BEA Systems WebLogic Express for Win32 6.0 SP 1 BEA Systems WebLogic Express for Win32 6.0 BEA Systems WebLogic Express for Win32 5.1 SP 9 BEA Systems WebLogic Express for Win32 5.1 SP 8 BEA Systems WebLogic Express for Win32 5.1 SP 7 BEA Systems WebLogic Express for Win32 5.1 SP 6 BEA Systems WebLogic Express for Win32 5.1 SP 5 BEA Systems WebLogic Express for Win32 5.1 SP 4 BEA Systems WebLogic Express for Win32 5.1 SP 3 BEA Systems WebLogic Express for Win32 5.1 SP 2 BEA Systems WebLogic Express for Win32 5.1 SP 12 BEA Systems WebLogic Express for Win32 5.1 SP 11 BEA Systems WebLogic Express for Win32 5.1 SP 10 BEA Systems WebLogic Express for Win32 5.1 SP 1 BEA Systems WebLogic Express 7.0 SP 1 BEA Systems WebLogic Express 7.0 BEA Systems WebLogic Express 6.1 SP 3 BEA Systems WebLogic Express 6.1 SP 2 BEA Systems WebLogic Express 6.1 SP 1 BEA Systems WebLogic Express 6.1 BEA Systems WebLogic Express 6.0 SP 2 BEA Systems WebLogic Express 6.0 SP 1 BEA Systems WebLogic Express 6.0 BEA Systems WebLogic Express 5.1 SP 9 BEA Systems WebLogic Express 5.1 SP 8 BEA Systems WebLogic Express 5.1 SP 7 BEA Systems WebLogic Express 5.1 SP 6 BEA Systems WebLogic Express 5.1 SP 5 BEA Systems WebLogic Express 5.1 SP 4 BEA Systems WebLogic Express 5.1 SP 3 BEA Systems WebLogic Express 5.1 SP 2 BEA Systems WebLogic Express 5.1 SP 12 BEA Systems WebLogic Express 5.1 SP 11 BEA Systems WebLogic Express 5.1 SP 10 BEA Systems WebLogic Express 5.1 SP 1 BEA Systems WebLogic Express 5.1 |
| Not Vulnerable: |
BEA Systems WebLogic Server for Win32 6.1 SP 4 BEA Systems WebLogic Server for Win32 5.1 SP 13 BEA Systems Weblogic Server 6.1 SP 4 BEA Systems Weblogic Server 5.1 SP 13 BEA Systems WebLogic Express for Win32 6.1 SP 4 BEA Systems WebLogic Express for Win32 5.1 SP 13 BEA Systems WebLogic Express 6.1 SP 4 BEA Systems WebLogic Express 5.1 SP 13 |
Discussion
BEA Systems WebLogic Server and Express Null Character DOS Device Denial of Service Vulnerability
BEA Systems WebLogic Server is an enterprise level web and wireless application server for Microsoft Windows and most Unix and Linux distributions.
BEA WebLogic Express provides a platform for serving dynamic data to web and wireless applications.
It is possible to create a denial of service condition by appending a null character to a request for a MS-DOS device name (such as AUX). Multiple malformed requests will cause the server to hang.
BugTraq ID 3816 "BEA Systems WebLogic Server DOS Device Denial of Service Vulnerability" describes a similar condition, which was fixed in WebLogic Server 6.1 SP2. However, the null character variation of this attack affects systems running WebLogic Server 6.1 SP2.
The server must be restarted to regain normal functionality.
BEA Systems WebLogic Server is an enterprise level web and wireless application server for Microsoft Windows and most Unix and Linux distributions.
BEA WebLogic Express provides a platform for serving dynamic data to web and wireless applications.
It is possible to create a denial of service condition by appending a null character to a request for a MS-DOS device name (such as AUX). Multiple malformed requests will cause the server to hang.
BugTraq ID 3816 "BEA Systems WebLogic Server DOS Device Denial of Service Vulnerability" describes a similar condition, which was fixed in WebLogic Server 6.1 SP2. However, the null character variation of this attack affects systems running WebLogic Server 6.1 SP2.
The server must be restarted to regain normal functionality.
Solution / Fix
BEA Systems WebLogic Server and Express Null Character DOS Device Denial of Service Vulnerability
Solution:
BEA Systems has released fixes. Administrators should note that systems patched against these vulnerabilities may be affected by two others, BIDs 6717 and 6719. Ensure that the most current patches are applied.
BEA Systems WebLogic Server for Win32 5.1 SP 12
BEA Systems WebLogic Express 5.1 SP 12
BEA Systems WebLogic Express for Win32 5.1 SP 12
BEA Systems Weblogic Server 5.1 SP 12
BEA Systems Weblogic Server 6.0 SP 2
BEA Systems WebLogic Express 6.0
BEA Systems WebLogic Express 6.0 SP 1
BEA Systems Weblogic Server 6.0
BEA Systems Weblogic Server 6.0 SP 1
BEA Systems WebLogic Express 6.0 SP 2
BEA Systems WebLogic Express for Win32 6.0 SP 2
BEA Systems WebLogic Express for Win32 6.0 SP 1
BEA Systems WebLogic Express for Win32 6.0
BEA Systems WebLogic Server for Win32 6.0
BEA Systems WebLogic Server for Win32 6.0 SP 2
BEA Systems WebLogic Server for Win32 6.0 SP 1
BEA Systems WebLogic Express 6.1 SP 3
BEA Systems WebLogic Express for Win32 6.1 SP 3
BEA Systems Weblogic Server 6.1 SP 3
BEA Systems WebLogic Server for Win32 7.0 SP 1
BEA Systems Weblogic Server 7.0 SP 1
BEA Systems WebLogic Express 7.0 SP 1
BEA Systems WebLogic Express for Win32 7.0 SP 1
Solution:
BEA Systems has released fixes. Administrators should note that systems patched against these vulnerabilities may be affected by two others, BIDs 6717 and 6719. Ensure that the most current patches are applied.
BEA Systems WebLogic Server for Win32 5.1 SP 12
BEA Systems WebLogic Express 5.1 SP 12
BEA Systems WebLogic Express for Win32 5.1 SP 12
BEA Systems Weblogic Server 5.1 SP 12
BEA Systems Weblogic Server 6.0 SP 2
-
BEA Systems CR089803_600sp2rp3.jar
Upgrade to Service Pack 2 Rolling Patch 3 before applying this patch.
ftp://ftpna.bea.com/pub/releases/security/CR089803_600sp2rp3.jar
BEA Systems WebLogic Express 6.0
-
BEA Systems CR089803_600sp2rp3.jar
Upgrade to Service Pack 2 Rolling Patch 3 before applying this patch.
ftp://ftpna.bea.com/pub/releases/security/CR089803_600sp2rp3.jar
BEA Systems WebLogic Express 6.0 SP 1
-
BEA Systems CR089803_600sp2rp3.jar
Upgrade to Service Pack 2 Rolling Patch 3 before applying this patch.
ftp://ftpna.bea.com/pub/releases/security/CR089803_600sp2rp3.jar
BEA Systems Weblogic Server 6.0
-
BEA Systems CR089803_600sp2rp3.jar
Upgrade to Service Pack 2 Rolling Patch 3 before applying this patch.
ftp://ftpna.bea.com/pub/releases/security/CR089803_600sp2rp3.jar
BEA Systems Weblogic Server 6.0 SP 1
-
BEA Systems CR089803_600sp2rp3.jar
Upgrade to Service Pack 2 Rolling Patch 3 before applying this patch.
ftp://ftpna.bea.com/pub/releases/security/CR089803_600sp2rp3.jar
BEA Systems WebLogic Express 6.0 SP 2
-
BEA Systems CR089803_600sp2rp3.jar
Upgrade to Service Pack 2 Rolling Patch 3 before applying this patch.
ftp://ftpna.bea.com/pub/releases/security/CR089803_600sp2rp3.jar
BEA Systems WebLogic Express for Win32 6.0 SP 2
-
BEA Systems CR089803_600sp2rp3.jar
Upgrade to Service Pack 2 Rolling Patch 3 before applying this patch.
ftp://ftpna.bea.com/pub/releases/security/CR089803_600sp2rp3.jar
BEA Systems WebLogic Express for Win32 6.0 SP 1
-
BEA Systems CR089803_600sp2rp3.jar
Upgrade to Service Pack 2 Rolling Patch 3 before applying this patch.
ftp://ftpna.bea.com/pub/releases/security/CR089803_600sp2rp3.jar
BEA Systems WebLogic Express for Win32 6.0
-
BEA Systems CR089803_600sp2rp3.jar
Upgrade to Service Pack 2 Rolling Patch 3 before applying this patch.
ftp://ftpna.bea.com/pub/releases/security/CR089803_600sp2rp3.jar
BEA Systems WebLogic Server for Win32 6.0
-
BEA Systems CR089803_600sp2rp3.jar
Upgrade to Service Pack 2 Rolling Patch 3 before applying this patch.
ftp://ftpna.bea.com/pub/releases/security/CR089803_600sp2rp3.jar
BEA Systems WebLogic Server for Win32 6.0 SP 2
-
BEA Systems CR089803_600sp2rp3.jar
Upgrade to Service Pack 2 Rolling Patch 3 before applying this patch.
ftp://ftpna.bea.com/pub/releases/security/CR089803_600sp2rp3.jar
BEA Systems WebLogic Server for Win32 6.0 SP 1
-
BEA Systems CR089803_600sp2rp3.jar
Upgrade to Service Pack 2 Rolling Patch 3 before applying this patch.
ftp://ftpna.bea.com/pub/releases/security/CR089803_600sp2rp3.jar
BEA Systems WebLogic Express 6.1 SP 3
BEA Systems WebLogic Express for Win32 6.1 SP 3
BEA Systems Weblogic Server 6.1 SP 3
BEA Systems WebLogic Server for Win32 7.0 SP 1
-
BEA Systems CR089803_70sp1.jar
Upgrade to Service Pack 1 before applying this patch.
ftp://ftpna.bea.com/pub/releases/security/CR089803_70sp1.jar
BEA Systems Weblogic Server 7.0 SP 1
-
BEA Systems CR089803_70sp1.jar
Upgrade to Service Pack 1 before applying this patch.
ftp://ftpna.bea.com/pub/releases/security/CR089803_70sp1.jar
BEA Systems WebLogic Express 7.0 SP 1
-
BEA Systems CR089803_70sp1.jar
Upgrade to Service Pack 1 before applying this patch.
ftp://ftpna.bea.com/pub/releases/security/CR089803_70sp1.jar
BEA Systems WebLogic Express for Win32 7.0 SP 1
-
BEA Systems CR089803_70sp1.jar
Upgrade to Service Pack 1 before applying this patch.
ftp://ftpna.bea.com/pub/releases/security/CR089803_70sp1.jar
References
BEA Systems WebLogic Server and Express Null Character DOS Device Denial of Service Vulnerability
References:
References:
- SECURITY ADVISORY (BEA03-14.05) (BEA Systems)
- WebLogic Server Product Homepage (Oracle)