CVE-2008-5360

EUVD-2008-5337
Java Runtime Environment (JRE) for Sun JDK and JRE 6 Update 10 and earlier; JDK and JRE 5.0 Update 16 and earlier; SDK and JRE 1.4.2_18 and earlier; and SDK and JRE 1.3.1_23 and earlier creates temporary files with predictable file names, which allows attackers to write malicious JAR files via unknown vectors.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
6.4 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:P/I:P/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 87%
Affected Products (NVD)
VendorProductVersion
sunjdk
1.5.0
sunjdk
1.5.0
sunjdk
1.5.0
sunjdk
1.5.0
sunjdk
1.5.0
sunjdk
1.5.0
sunjdk
1.5.0
sunjdk
1.5.0
sunjdk
1.5.0
sunjdk
1.5.0
sunjdk
1.5.0
sunjdk
1.6.0
sunjdk
1.6.0
sunjdk
1.6.0
sunjdk
1.6.0
sunjdk
1.6.0
sunjdk
1.6.0
sunjdk
1.6.0
sunjre
1.3.1
sunjre
1.3.1_2:_2
sunjre
1.3.1_03:_03
sunjre
1.3.1_04:_04
sunjre
1.3.1_05:_05
sunjre
1.3.1_06:_06
sunjre
1.3.1_07:_07
sunjre
1.3.1_08:_08
sunjre
1.3.1_09:_09
sunjre
1.3.1_10:_10
sunjre
1.3.1_11:_11
sunjre
1.3.1_12:_12
sunjre
1.3.1_13:_13
sunjre
1.3.1_14:_14
sunjre
1.3.1_15:_15
sunjre
1.3.1_16:_16
sunjre
1.3.1_17:_17
sunjre
1.3.1_18:_18
sunjre
1.3.1_19:_19
sunjre
1.3.1_20:_20
sunjre
1.3.1_21:_21
sunjre
1.3.1_22:_22
sunjre
1.3.1_23:_23
sunjre
1.4.2
sunjre
1.4.2_1:_1
sunjre
1.4.2_2:_2
sunjre
1.4.2_3:_3
sunjre
1.4.2_4:_4
sunjre
1.4.2_5:_5
sunjre
1.4.2_6:_6
sunjre
1.4.2_7:_7
sunjre
1.4.2_8:_8
sunjre
1.4.2_9:_9
sunjre
1.4.2_10:_10
sunjre
1.4.2_11:_11
sunjre
1.4.2_12:_12
sunjre
1.4.2_13:_13
sunjre
1.4.2_14:_14
sunjre
1.4.2_15:_15
sunjre
1.4.2_16:_16
sunjre
1.4.2_17:_17
sunjre
1.4.2_18:_18
sunjre
1.5.0
sunjre
1.5.0
sunjre
1.5.0
sunjre
1.5.0
sunjre
1.5.0
sunjre
1.5.0
sunjre
1.5.0
sunjre
1.5.0
sunjre
1.5.0
sunjre
1.5.0
sunjre
1.6.0
sunjre
1.6.0
sunjre
1.6.0
sunjre
1.6.0
sunjre
1.6.0
sunjre
1.6.0
sunjre
1.6.0
sunjre
1.6.0
sunsdk
1.3.1
sunsdk
1.3.1_01:_01
sunsdk
1.3.1_01a:_01a
sunsdk
1.3.1_02:_02
sunsdk
1.3.1_03:_03
sunsdk
1.3.1_04:_04
sunsdk
1.3.1_05:_05
sunsdk
1.3.1_06:_06
sunsdk
1.3.1_07:_07
sunsdk
1.3.1_08:_08
sunsdk
1.3.1_09:_09
sunsdk
1.3.1_10:_10
sunsdk
1.3.1_11:_11
sunsdk
1.3.1_12:_12
sunsdk
1.3.1_13:_13
sunsdk
1.3.1_14:_14
sunsdk
1.3.1_15:_15
sunsdk
1.3.1_16:_16
sunsdk
1.3.1_17:_17
sunsdk
1.3.1_18:_18
sunsdk
1.3.1_19:_19
sunsdk
1.3.1_20:_20
sunsdk
1.3.1_21:_21
sunsdk
1.3.1_22:_22
sunsdk
1.3.1_23:_23
sunsdk
1.4.2
sunsdk
1.4.2_1:_1
sunsdk
1.4.2_2:_2
sunsdk
1.4.2_02:_02
sunsdk
1.4.2_03:_03
sunsdk
1.4.2_3:_3
sunsdk
1.4.2_04:_04
sunsdk
1.4.2_4:_4
sunsdk
1.4.2_5:_5
sunsdk
1.4.2_6:_6
sunsdk
1.4.2_7:_7
sunsdk
1.4.2_8:_8
sunsdk
1.4.2_08:_08
sunsdk
1.4.2_09:_09
sunsdk
1.4.2_9:_9
sunsdk
1.4.2_10:_10
sunsdk
1.4.2_11:_11
sunsdk
1.4.2_12:_12
sunsdk
1.4.2_13:_13
sunsdk
1.4.2_14:_14
sunsdk
1.4.2_15:_15
sunsdk
1.4.2_16:_16
sunsdk
1.4.2_17:_17
sunsdk
1.4.2_18:_18
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
openjdk-6
dapper
dne
gutsy
dne
hardy
Fixed 6b11-2ubuntu2.1
released
intrepid
Fixed 6b12-0ubuntu6.1
released
jaunty
not-affected
karmic
not-affected
sun-java5
dapper
ignored
gutsy
ignored
hardy
Fixed 1.5.0-22-0ubuntu0.8.04
released
intrepid
Fixed 1.5.0-19-0ubuntu0.8.10
released
jaunty
Fixed 1.5.0-19-0ubuntu0.9.04
released
karmic
dne
sun-java6
dapper
dne
gutsy
ignored
hardy
Fixed 6-17-0ubuntu1.8.04
released
intrepid
Fixed 6-14-0ubuntu1.8.10
released
jaunty
Fixed 6-16-0ubuntu1.9.04
released
karmic
Fixed 6-15-1
released
References