PT-2007-6323 · Oracle+1 · Java Runtime Environment+1

Published

2007-10-06

·

Updated

2018-10-30

·

CVE-2007-5240

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions: Java Runtime Environment versions prior to 6 Update 3 Java Runtime Environment versions prior to 5.0 Update 13 Java Runtime Environment versions prior to 1.4.2 16 Java Runtime Environment versions prior to 1.3.1 21
Description: A visual truncation issue in the Java Runtime Environment allows remote attackers to bypass the display of the untrusted-code warning banner. This is achieved by creating a window that is larger than the workstation screen.
Recommendations: For versions prior to 6 Update 3, update to version 6 Update 3 or later to resolve the issue. For versions prior to 5.0 Update 13, update to version 5.0 Update 13 or later to resolve the issue. For versions prior to 1.4.2 16, update to version 1.4.2 16 or later to resolve the issue. For versions prior to 1.3.1 21, update to version 1.3.1 21 or later to resolve the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2007-5240
HPSBUX02284
RHSA-2007:0963
RHSA-2007:1041
RHSA-2008:0100
RHSA-2008:0132
RHSA-2008:0156

Affected Products

Hp-Ux
Java Runtime Environment