PT-2007-6125 · Oracle · Java Web Start+1

Yag Kohha

·

Publicado

2007-09-20

·

Atualizado

2017-09-29

·

CVE-2007-5019

CVSS v2.0

10

Alta

VetorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Java Runtime Environment (JRE) version 1.6.0 X
Description The issue is related to a buffer overflow in the Sun Java Web Start ActiveX control. This occurs when a long argument is passed to the dnsResolve method, potentially allowing remote attackers to have an unknown impact.
Recommendations For Java Runtime Environment (JRE) version 1.6.0 X, consider restricting access to the dnsResolve method as a temporary workaround until a patch is available.

Exploit

Correção

Buffer Overflow

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2007-5019

Produtos afetados

Java Runtime Environment
Java Web Start