Re: Jetty Vulnerabilities?

From: Unruh (unruh-spam_at_physics.ubc.ca)
Date: 06/08/05


Date: 8 Jun 2005 21:41:43 GMT


"Clementine" <kashmira.phalak@gmail.com> writes:

>Hi,
>The Jetty HTTP server is supposed to be more secure and robust than
>APACHE, Tomcat. Is there any place where i could find what attacks
>Jetty is vulnerable to and if there are any holes which would
>compromise the security of the web applications.

If they knew what holes there were they would presumably be plugged.
Certainly the known holes in apache are plugged. It is the unknown holes
that are the problem. And you will have a hard time finding a list of the
unknown holes.