>> Sun Java Secure Socket Extension SSL/TLS Handshake Denial of Service Issue
Title : Sun Java Secure Socket Extension SSL/TLS Handshake Denial of Service Issue VUPEN ID : VUPEN/ADV-2007-2495 CVE ID : CVE-2007-3698
Rated as : Low Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2007-07-11
Technical Description
A vulnerability has been identified in Sun JDK, JRE and SDK, which could be exploited by attackers to cause a denial of service. This issue is caused by an error in the Java Secure Socket Extension (JSSE) when processing certain SSL/TLS handshake requests, which could be exploited by attackers to create a denial of service on a vulnerable system that listens for SSL/TLS connections using JSSE for SSL/TLS support.