CVE-2009-3881
09.11.2009, 19:30
Sun Java SE 5.0 before Update 22 and 6 before Update 17, and OpenJDK, does not prevent the existence of children of a resurrected ClassLoader, which allows remote attackers to gain privileges via unspecified vectors, related to an "information leak vulnerability," aka Bug Id 6636650.Enginsight
| Vendor | Product | Version |
|---|---|---|
| sun | jre | 𝑥 ≤ 1.5.0 |
| sun | jre | 𝑥 ≤ 1.6.0 |
| sun | jre | 1.5.0 |
| sun | jre | 1.5.0 |
| sun | jre | 1.5.0 |
| sun | jre | 1.5.0 |
| sun | jre | 1.5.0 |
| sun | jre | 1.5.0 |
| sun | jre | 1.5.0 |
| sun | jre | 1.5.0 |
| sun | jre | 1.5.0 |
| sun | jre | 1.5.0 |
| sun | jre | 1.5.0 |
| sun | jre | 1.5.0 |
| sun | jre | 1.5.0 |
| sun | jre | 1.5.0 |
| sun | jre | 1.5.0 |
| sun | jre | 1.5.0 |
| sun | jre | 1.5.0 |
| sun | jre | 1.5.0 |
| sun | jre | 1.5.0 |
| sun | jre | 1.5.0 |
| sun | jre | 1.6.0 |
| sun | jre | 1.6.0 |
| sun | jre | 1.6.0 |
| sun | jre | 1.6.0 |
| sun | jre | 1.6.0 |
| sun | jre | 1.6.0 |
| sun | jre | 1.6.0 |
| sun | jre | 1.6.0 |
| sun | jre | 1.6.0 |
| sun | jre | 1.6.0 |
| sun | jre | 1.6.0 |
| sun | jre | 1.6.0 |
| sun | jre | 1.6.0 |
| sun | jre | 1.6.0 |
| sun | jre | 1.6.0 |
| sun | openjdk | * |
𝑥
= Vulnerable software versions
Ubuntu Releases
Ubuntu Product | |||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| openjdk-6 |
| ||||||||||||||
| sun-java5 |
| ||||||||||||||
| sun-java6 |
|
Common Weakness Enumeration
References