LWN.net Logo

openjdk: arbitrary file access

Package(s):openjdk-6 CVE #(s):CVE-2010-2548 CVE-2010-2783
Created:August 16, 2010 Updated:August 26, 2010
Description: From the Ubuntu advisory:

It was discovered that the IcedTea plugin did not correctly check certain accesses. If a user or automated system were tricked into running a specially crafted Java applet, a remote attacker could read arbitrary files with user privileges, leading to a loss of privacy.

Alerts:
openSUSE openSUSE-SU-2010:0553-1 2010-08-26
SUSE SUSE-SR:2010:016 2010-08-26
Ubuntu USN-971-1 2010-08-16

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds