PT-2011-1570 · Oracle+1 · Java Runtime Environment+2

Published

2011-02-15

·

Updated

2018-10-30

·

CVE-2010-4466

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions Java Runtime Environment (JRE) versions 6 Update 23 and earlier for Windows, Solaris, and Linux Java Runtime Environment (JRE) versions 5.0 Update 27 and earlier for Windows Java Runtime Environment (JRE) versions 1.4.2 29 and earlier for Windows
Description The issue allows remote untrusted Java Web Start applications and untrusted Java applets to affect confidentiality via unknown vectors related to Deployment. This could potentially lead to information leakage.
Recommendations For Java Runtime Environment (JRE) versions 6 Update 23 and earlier, update to a version later than Update 23 to resolve the issue. For Java Runtime Environment (JRE) versions 5.0 Update 27 and earlier, update to a version later than Update 27 to resolve the issue. For Java Runtime Environment (JRE) versions 1.4.2 29 and earlier, update to a version later than 1.4.2 29 to resolve the issue.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2010-4466
RHSA-2011:0282
RHSA-2011:0357
RHSA-2011:0364
RHSA-2011:0490
RHSA-2011:0870
RHSA-2011:0880
RHSA-2011_0282
RHSA-2011_0357
RHSA-2011_0364
ZDI-11-082

Affected Products

Java Platform
Java Runtime Environment
Red Hat