LWN.net Logo

java: vulnerable versions can be requested by applet

Package(s):java CVE #(s):CVE-2008-3115
Created:August 25, 2008 Updated:November 18, 2009
Description:

From the SUSE advisory:

CVE-2008-3115: Secure Static Versioning in Sun Java JDK and JRE 6 Update 6 and earlier, and 5.0 Update 6 through 15, does not properly prevent execution of applets on older JRE releases, which might allow remote attackers to exploit vulnerabilities in these older releases.

Alerts:
Gentoo 200911-02 2009-11-17
SuSE SUSE-SA:2008:042 2008-08-25

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds