PT-2009-6110 · Sun · Sun Java Se 6+1
Marc Schoenefeld
·
Published
2009-11-09
·
Updated
2017-09-19
·
CVE-2009-3885
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
Sun Java SE 5.0 before Update 22
Sun Java SE 6 before Update 17
Description
The issue allows remote attackers to cause a denial of service via a BMP file containing a link to a UNC share pathname for an International Color Consortium (ICC) profile file.
Recommendations
For Sun Java SE 5.0 before Update 22, update to Update 22 or later to resolve the issue.
For Sun Java SE 6 before Update 17, update to Update 17 or later to resolve the issue.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Sun Java Se 5.0
Sun Java Se 6