---
title: CVE-2010-4265
description: Ubuntu is an open source software operating system that runs from the
  desktop, to the cloud, to all your internet connected things.
url: https://ubuntu.com/security/CVE-2010-4265
---

# CVE-2010-4265

Publication date 30 December 2010

Last updated 4 August 2025

---

Ubuntu priority

**Medium**

[Why this priority?](https://ubuntu.com/security/cves/about#priority )

Toggle side navigation

## Description

The
org.jboss.remoting.transport.bisocket.BisocketServerInvoker$SecondaryServerSocketThread.run
method in JBoss Remoting 2.2.x before 2.2.3.SP4 and 2.5.x before 2.5.3.SP2
in Red Hat JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP)
4.3 through 4.3.0.CP09 allows remote attackers to cause a denial of service
(daemon outage) by establishing a bisocket control connection TCP session,
and then not sending any application data, related to a missing
CVE-2010-3862 patch. NOTE: this can be considered a duplicate of
CVE-2010-3862 because a missing patch should not be assigned a separate CVE
identifier.

[Read the notes from the security team](https://ubuntu.com/security/CVE-2010-4265#notes)

## Status

Show unmaintained releases

| Package | Ubuntu Release | Status |
| --- | --- | --- |
| jbossas4 | 18.10 cosmic | Not in release |
| 18.04 LTS bionic | Not in release |
| 17.10 artful | Not in release |
| 17.04 zesty | Not in release |
| 16.10 yakkety | Not in release |
| 16.04 LTS xenial | Not in release |
| 15.10 wily | Not in release |
| 15.04 vivid | Not in release |
| 14.10 utopic | Ignored end of life |
| 14.04 LTS trusty | Not in release |
| 13.10 saucy | Ignored end of life |
| 13.04 raring | Ignored end of life |
| 12.10 quantal | Ignored end of life |
| 12.04 LTS precise | Ignored end of life |
| 11.10 oneiric | Ignored end of life |
| 11.04 natty | Ignored end of life |
| 10.10 maverick | Ignored end of life |
| 10.04 LTS lucid | Ignored end of life |
| 9.10 karmic | Ignored end of life |
| 8.04 LTS hardy | Ignored end of life |
| 6.06 LTS dapper | Not in release |

---

* [How can I get the fixes?](https://ubuntu.com/security/cves/about#security)
* [What do statuses mean?](https://ubuntu.com/security/cves/about#statuses)

## Notes

---

### [mdeslaur](https://launchpad.net/~mdeslaur)

probably RH specific as it's a missing patch for CVE-2010-3862

## References

* [MITRE](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-4265)
* [NVD](https://nvd.nist.gov/vuln/detail/CVE-2010-4265)
* [Launchpad](https://launchpad.net/bugs/cve/CVE-2010-4265)
* [Debian](https://security-tracker.debian.org/tracker/CVE-2010-4265)

### Other references

* <https://www.cve.org/CVERecord?id=CVE-2010-4265>
