Security Experts:

Adobe Patches DoS Vulnerability in ColdFusion 10

Adobe today continued its wave of security updates with a newly released security update for Adobe ColdFusion 10.

The hotfix fixes a vulnerability affecting ColdFusion 10 Update 1 and above running on Windows Internet Information Services (IIS), that could result in a Denial of Service condition.

Rated as “Important” with an update priority rating of 2, the update resolves the vulnerability that could render systems unresponsive.

As always, Adobe recommends that users update any affected software using the instructions provided in the security bulletin

Adobe’s Product Security Incident Response Team (PSIRT) credited Brian Cassell of Compass Group North America for reporting the vulnerability (CVE-2012-5674) and noted that they have not seen any related exploits or attacks in the wild.

view counter
For more than 10 years, Mike Lennon has been closely monitoring and analyzing trends in the enterprise IT security space and the threat landscape. In his role at SecurityWeek he oversees the editorial direction of the publication and manages several leading security conferences.