PT-2011-4521 · Oracle+3 · Java Se Jdk+5
Published
2011-10-18
·
Updated
2022-05-13
·
CVE-2011-3547
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Oracle Java SE JDK and JRE versions 7, 6 Update 27 and earlier, 5.0 Update 31 and earlier, and 1.4.2 33 and earlier
Description
The issue allows remote untrusted Java Web Start applications and untrusted Java applets to affect confidentiality via unknown vectors related to the Networking component. This could potentially lead to a breach of confidentiality.
Recommendations
For Oracle Java SE JDK and JRE version 7, update to a version later than 7 to resolve the issue.
For Oracle Java SE JDK and JRE version 6, update to a version later than 6 Update 27 to resolve the issue.
For Oracle Java SE JDK and JRE version 5.0, update to a version later than 5.0 Update 31 to resolve the issue.
For Oracle Java SE JDK and JRE version 1.4.2, update to a version later than 1.4.2 33 to resolve the issue.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Hp-Ux
Java Platform
Java Se Jdk
Java Se Jre
Red Hat
Suse