CVE-2009-4609
Publication date 13 January 2010
Last updated 24 July 2024
Ubuntu priority
The Dump Servlet in Mort Bay Jetty 6.x and 7.0.0 allows remote attackers to obtain sensitive information about internal variables and other data via a request to a URI ending in /dump/, as demonstrated by discovering the value of the getPathTranslated variable.
Status
Package | Ubuntu Release | Status |
---|---|---|
jetty | 10.04 LTS lucid |
Not affected
|
9.10 karmic |
Not affected
|
|
9.04 jaunty |
Not affected
|
|
8.10 intrepid | Ignored end of life, was needed | |
8.04 LTS hardy |
Not affected
|
|
6.06 LTS dapper | Ignored end of life |