LWN.net Logo

openjdk: privilege escalation

Package(s):openjdk CVE #(s):CVE-2011-0025
Created:February 2, 2011 Updated:June 15, 2011
Description: The IcedTea openjdk implementation does not properly verify signatures on JAR files in some situations, allowing an attacker to run code which appears to be from a trusted source.
Alerts:
Mandriva MDVSA-2011:054 2011-03-27
SUSE SUSE-SR:2011:003 2011-02-08
Debian DSA-2224-1 2011-04-20
openSUSE openSUSE-SU-2011:0102-1 2011-02-07
Ubuntu USN-1055-1 2011-02-01

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds