CVE-2009-2674
05.08.2009, 19:30
Integer overflow in javaws.exe in Sun Java Web Start in Sun Java Runtime Environment (JRE) in JDK and JRE 6 before Update 15 allows context-dependent attackers to execute arbitrary code via a crafted JPEG image that is not properly handled during display to a splash screen, which triggers a heap-based buffer overflow.Enginsight
| Vendor | Product | Version |
|---|---|---|
| sun | jdk | 1.6.0 |
𝑥
= Vulnerable software versions
Ubuntu Releases
Ubuntu Product | |||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| java |
| ||||||||||||||
| openjdk-6 |
| ||||||||||||||
| sun-java5 |
| ||||||||||||||
| sun-java6 |
|
Common Weakness Enumeration
References