Security Experts:

Adobe Patches DoS Vulnerability in ColdFusion 10

Adobe today continued its wave of security updates with a newly released security update for Adobe ColdFusion 10.

The hotfix fixes a vulnerability affecting ColdFusion 10 Update 1 and above running on Windows Internet Information Services (IIS), that could result in a Denial of Service condition.

Rated as “Important” with an update priority rating of 2, the update resolves the vulnerability that could render systems unresponsive.

As always, Adobe recommends that users update any affected software using the instructions provided in the security bulletin

Adobe’s Product Security Incident Response Team (PSIRT) credited Brian Cassell of Compass Group North America for reporting the vulnerability (CVE-2012-5674) and noted that they have not seen any related exploits or attacks in the wild.

Subscribe to the SecurityWeek Email Briefing
view counter