PT-2008-4527 · Sun+1 · Sun Java Runtime Environment+1

Published

2008-07-09

·

Updated

2018-10-30

·

CVE-2008-3107

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions: Sun Java Runtime Environment (JRE) versions prior to 6 Update 7 Sun Java Runtime Environment (JRE) versions prior to 5.0 Update 16 Sun Java Runtime Environment (JRE) versions prior to 1.4.2 18
Description: The issue allows context-dependent attackers to gain privileges via an untrusted application or applet. This can be demonstrated by an application or applet that grants itself privileges to read local files, write to local files, or execute local programs.
Recommendations: For versions prior to 6 Update 7, update to version 6 Update 7 or later. For versions prior to 5.0 Update 16, update to version 5.0 Update 16 or later. For versions prior to 1.4.2 18, update to version 1.4.2 18 or later.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2008-3107
RHSA-2008:0594
RHSA-2008:0595
RHSA-2008:0636

Affected Products

Java Platform
Sun Java Runtime Environment