Vulnerability Name: | CVE-2007-4136 (CCN-38358) | ||||||||||||||||
Assigned: | 2007-10-31 | ||||||||||||||||
Published: | 2007-10-31 | ||||||||||||||||
Updated: | 2017-09-29 | ||||||||||||||||
Summary: | The ricci daemon in Red Hat Conga 0.10.0 allows remote attackers to cause a denial of service (loss of new connections) by repeatedly sending data or attempting connections. | ||||||||||||||||
CVSS v3 Severity: | 4.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)
| ||||||||||||||||
CVSS v2 Severity: | 5.0 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P) 3.7 Low (Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P/E:U/RL:OF/RC:C)
2.4 Low (CCN Temporal CVSS v2 Vector: AV:A/AC:L/Au:N/C:N/I:N/A:P/E:U/RL:OF/RC:C)
2.4 Low (REDHAT Temporal CVSS v2 Vector: AV:A/AC:L/Au:N/C:P/I:N/A:N/E:U/RL:OF/RC:C)
| ||||||||||||||||
Vulnerability Type: | CWE-Other | ||||||||||||||||
Vulnerability Consequences: | Denial of Service | ||||||||||||||||
References: | Source: MITRE Type: CNA CVE-2007-4136 Source: CCN Type: RHSA-2007-0640 Moderate: conga security Source: REDHAT Type: Patch RHSA-2007:0640 Source: CCN Type: RHSA-2007-0983 Moderate: conga security Source: CCN Type: SA27611 Red Hat Conga "ricci" Denial of Service Vulnerability Source: SECUNIA Type: Vendor Advisory 27611 Source: CCN Type: SECTRACK ID: 1018921 Conga ricci Daemon Connection Limit Lets Remote Users Deny Service Source: SECTRACK Type: Patch 1018921 Source: CCN Type: Conga Web page Conga Home page Source: CCN Type: ASA-2007-486 conga security bug fix and enhancement update (RHSA-2007-0983) Source: BID Type: UNKNOWN 26393 Source: CCN Type: BID-26393 Conga ricci Connection Limit Remote Denial Of Service Vulnerability Source: CCN Type: Red Hat Bugzilla Bug 336101 CVE-2007-4136 ricci is vulnerable to a connect DoS attack Source: CONFIRM Type: UNKNOWN https://bugzilla.redhat.com/show_bug.cgi?id=336101 Source: XF Type: UNKNOWN rhel-congaricci-dos(38358) Source: XF Type: UNKNOWN rhel-congaricci-dos(38358) Source: OVAL Type: UNKNOWN oval:org.mitre.oval:def:9871 | ||||||||||||||||
Vulnerable Configuration: | Configuration 1: Configuration RedHat 1: Configuration CCN 1: ![]() | ||||||||||||||||
Oval Definitions | |||||||||||||||||
| |||||||||||||||||
BACK |