LWN.net Logo

icedtea-web: code execution

Package(s):icedtea-web CVE #(s):CVE-2012-4540
Created:November 8, 2012 Updated:January 23, 2013
Description:

From the Red Hat advisory:

A buffer overflow flaw was found in the IcedTea-Web plug-in. Visiting a malicious web page could cause a web browser using the IcedTea-Web plug-in to crash or, possibly, execute arbitrary code. (CVE-2012-4540)

Alerts:
Red Hat RHSA-2012:1434-01 2012-11-07
Oracle ELSA-2012-1434 2012-11-07
Scientific Linux SL-iced-20121107 2012-11-07
Ubuntu USN-1625-1 2012-11-07
CentOS CESA-2012:1434 2012-11-08
Mageia MGASA-2012-0329 2012-11-09
Mandriva MDVSA-2012:171 2012-11-09
Fedora FEDORA-2012-17762 2012-11-11
Fedora FEDORA-2012-17745 2012-11-11
openSUSE openSUSE-SU-2012:1524-1 2012-11-22
openSUSE openSUSE-SU-2013:0174-1 2013-01-23

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds