CVE-2008-3637
26.09.2008, 16:21
The Hash-based Message Authentication Code (HMAC) provider in Java on Apple Mac OS X 10.4.11, 10.5.4, and 10.5.5 uses an uninitialized variable, which allows remote attackers to execute arbitrary code via a crafted applet, related to an "error checking issue."Enginsight
| Vendor | Product | Version |
|---|---|---|
| apple | mac_os_x | 10.4.11 |
| apple | mac_os_x | 10.5.4 |
| apple | mac_os_x | 10.5.5 |
| apple | mac_os_x_server | 10.4.11 |
| apple | mac_os_x_server | 10.5.4 |
| apple | mac_os_x_server | 10.5.5 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References