vulnerability

Red Hat JBoss EAP: CVE-2016-4459: Improper Restriction of Operations within the Bounds of a Memory Buffer

Severity
4
CVSS
(AV:L/AC:H/Au:S/C:N/I:N/A:C)
Published
Oct 12, 2016
Added
Sep 19, 2024
Modified
Jul 2, 2025

Description

Stack-based buffer overflow in native/mod_manager/node.c in mod_cluster 1.2.9.. It was discovered that specifying configuration with a JVMRoute path longer than 80 characters will cause segmentation fault leading to a server crash.

Solution

red-hat-jboss-eap-upgrade-latest
Title
Rapid7 Labs

2026 Global Threat Landscape Report

The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.