CVE-2008-5343
05.12.2008, 11:30
Java Web Start (JWS) and Java Plug-in with Sun JDK and JRE 6 Update 10 and earlier; JDK and JRE 5.0 Update 16 and earlier; and SDK and JRE 1.4.2_18 and earlier allows remote attackers to make unauthorized network connections and hijack HTTP sessions via a crafted file that validates as both a GIF and a Java JAR file, aka "GIFAR" and CR 6707535.Enginsight
Vendor | Product | Version |
---|---|---|
sun | jdk | 𝑥 ≤ 5.0 |
sun | jdk | 𝑥 ≤ 6 |
sun | jdk | 5.0 |
sun | jdk | 5.0 |
sun | jdk | 5.0 |
sun | jdk | 5.0 |
sun | jdk | 5.0 |
sun | jdk | 5.0 |
sun | jdk | 5.0 |
sun | jdk | 5.0 |
sun | jdk | 5.0 |
sun | jdk | 5.0 |
sun | jdk | 5.0 |
sun | jdk | 5.0 |
sun | jdk | 5.0 |
sun | jdk | 5.0 |
sun | jdk | 5.0 |
sun | jre | 𝑥 ≤ 1.4.2_18 |
sun | jre | 𝑥 ≤ 5.0 |
sun | jre | 𝑥 ≤ 6 |
sun | jre | 1.4.2_1:_1 |
sun | jre | 1.4.2_2:_2 |
sun | jre | 1.4.2_3:_3 |
sun | jre | 1.4.2_4:_4 |
sun | jre | 1.4.2_5:_5 |
sun | jre | 1.4.2_6:_6 |
sun | jre | 1.4.2_7:_7 |
sun | jre | 1.4.2_8:_8 |
sun | jre | 1.4.2_9:_9 |
sun | jre | 1.4.2_10:_10 |
sun | jre | 1.4.2_11:_11 |
sun | jre | 1.4.2_12:_12 |
sun | jre | 1.4.2_13:_13 |
sun | jre | 1.4.2_14:_14 |
sun | jre | 1.4.2_15:_15 |
sun | jre | 1.4.2_16:_16 |
sun | jre | 1.4.2_17:_17 |
sun | jre | 5.0 |
sun | jre | 5.0 |
sun | jre | 5.0 |
sun | jre | 5.0 |
sun | jre | 5.0 |
sun | jre | 5.0 |
sun | jre | 5.0 |
sun | jre | 5.0 |
sun | jre | 5.0 |
sun | jre | 5.0 |
sun | jre | 5.0 |
sun | jre | 5.0 |
sun | jre | 5.0 |
sun | jre | 5.0 |
sun | jre | 5.0 |
sun | jre | 5.0 |
sun | sdk | 𝑥 ≤ 1.4.2_18 |
sun | sdk | 1.4.2_1:_1 |
sun | sdk | 1.4.2_2:_2 |
sun | sdk | 1.4.2_3:_3 |
sun | sdk | 1.4.2_4:_4 |
sun | sdk | 1.4.2_5:_5 |
sun | sdk | 1.4.2_6:_6 |
sun | sdk | 1.4.2_7:_7 |
sun | sdk | 1.4.2_8:_8 |
sun | sdk | 1.4.2_9:_9 |
sun | sdk | 1.4.2_10:_10 |
sun | sdk | 1.4.2_11:_11 |
sun | sdk | 1.4.2_12:_12 |
sun | sdk | 1.4.2_13:_13 |
sun | sdk | 1.4.2_14:_14 |
sun | sdk | 1.4.2_15:_15 |
sun | sdk | 1.4.2_16:_16 |
sun | sdk | 1.4.2_17:_17 |
𝑥
= Vulnerable software versions
References