Skip to main content

Sun Java Multiple Code Execution and Security Bypass Vulnerabilities

Last Update Date: 28 Jan 2011 Release Date: 6 Mar 2008 4442 Views

RISK: Medium Risk

Multiple vulnerabilities have been identified in Sun Java, which could be exploited by remote attackers to bypass security restrictions or take complete control of an affected system. These issues are caused by unspecified errors when handling certain data or applets, which could be exploited by malicious web sites to bypass security checks, disclose sensitive information or execute arbitrary code. No further details have been disclosed.


System / Technologies affected

  • Sun JDK versions prior to 6 Update 5
  • Sun JDK versions prior to 5.0 Update 15
  • Sun JRE versions prior to 6 Update 5
  • Sun JRE versions prior to 5.0 Update 15
  • Sun JRE versions prior to 1.4.2_17
  • Sun JRE versions prior to 1.3.1_22
  • Sun SDK versions prior to 1.4.2_17
  • Sun SDK versions prior to 1.3.1_22


Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.

Update to the fixed version.

JDK and JRE 6 Update 5:
http://java.sun.com/javase/downloads/index.jsp

JDK and JRE 5.0 Update 15:
http://java.sun.com/javase/downloads/index_jdk5.jsp

SDK and JRE 1.4.2_17:
http://java.sun.com/j2se/1.4.2/download.html


Vulnerability Identifier

  • No CVE information is available

Source


Related Link