PT-2008-4527 · Sun+1 · Sun Java Runtime Environment+1
Published
2008-07-09
·
Updated
2018-10-30
·
CVE-2008-3107
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions:
Sun Java Runtime Environment (JRE) versions prior to 6 Update 7
Sun Java Runtime Environment (JRE) versions prior to 5.0 Update 16
Sun Java Runtime Environment (JRE) versions prior to 1.4.2 18
Description:
The issue allows context-dependent attackers to gain privileges via an untrusted application or applet. This can be demonstrated by an application or applet that grants itself privileges to read local files, write to local files, or execute local programs.
Recommendations:
For versions prior to 6 Update 7, update to version 6 Update 7 or later.
For versions prior to 5.0 Update 16, update to version 5.0 Update 16 or later.
For versions prior to 1.4.2 18, update to version 1.4.2 18 or later.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Java Platform
Sun Java Runtime Environment