LWN.net Logo

java: remote file creation and modification

Package(s):java CVE #(s):CVE-2009-2676
Created:November 12, 2009 Updated:November 18, 2009
Description: From the National Vulnerability Database entry:

Unspecified vulnerability in JNLPAppletlauncher in Sun Java SE, and SE for Business, in JDK and JRE 6 Update 14 and earlier and JDK and JRE 5.0 Update 19 and earlier; and Java SE for Business in SDK and JRE 1.4.2_21 and earlier; allows remote attackers to create or modify arbitrary files via vectors involving an untrusted Java applet that accesses an old version of JNLPAppletLauncher.

Alerts:
Red Hat RHSA-2009:1582-01 2009-11-12
Gentoo 200911-02 2009-11-17

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds