Tuesday, March 13, 2012

Security Hot-Fix for ColdFusion - March 2012

Today, a priority 2 update is released, addressing an important vulnerability in ColdFusion 9.0.1 and earlier. Adobe recommends to update the ColdFusion servers. Here is the link for security bulletin

This hot-fix addresses hashDoS (denial of service attack using hash collisions) issue. CV-2012-0770.


I wanted to cover HashDos in details so I have added a separate entry for this. HashDos: DoS using Hash Collisions

Also See:
March 2012 Security Hot-Fix updated for ColdFusion 801

No comments:

Post a Comment

You can subscribe to the comments by licking on "Subscribe by email".