PT-2005-1304 · Oracle+1 · Java Virtual Machine+1
Published
2005-02-06
·
Updated
2016-10-18
·
CVE-2005-0223
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
Software Development Kit (SDK) and Run Time Environment (RTE) versions 1.4.1 through 1.4.2 for Tru64 UNIX
Description
The issue allows remote attackers to cause a denial of service, resulting in a Java Virtual Machine hang, via object deserialization.
Recommendations
For versions 1.4.1 and 1.4.2, consider disabling object deserialization until a patch is available.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Java Virtual Machine
Tru64 Unix