[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248038

 
 

909

 
 

194772

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

USN-748-1 -- openjdk-6 vulnerabilities

ID: oval:org.secpod.oval:def:700339Date: (C)2011-05-13   (M)2022-01-03
Class: PATCHFamily: unix




It was discovered that font creation could leak temporary files. If a user were tricked into loading a malicious program or applet, a remote attacker could consume disk space, leading to a denial of service. It was discovered that the lightweight HttpServer did not correctly close files on dataless connections. A remote attacker could send specially crafted requests, leading to a denial of service. Certain 64bit Java actions would crash an application. A local attacker might be able to cause a denial of service. It was discovered that LDAP connections did not close correctly. A remote attacker could send specially crafted requests, leading to a denial of service. Java LDAP routines did not unserialize certain data correctly. A remote attacker could send specially crafted requests that could lead to arbitrary code execution. Java did not correctly check certain JAR headers. If a user or automated system were tricked into processing a malicious JAR file, a remote attacker could crash the application, leading to a denial of service. It was discovered that PNG and GIF decoding in Java could lead to memory corruption. If a user or automated system were tricked into processing a specially crafted image, a remote attacker could crash the application, leading to a denial of service

Platform:
Ubuntu 8.10
Product:
openjdk-6
Reference:
USN-748-1
CVE-2006-2426
CVE-2009-1093
CVE-2009-1094
CVE-2009-1095
CVE-2009-1096
CVE-2009-1097
CVE-2009-1098
CVE-2009-1100
CVE-2009-1101
CVE-2009-1102
CVE    10
CVE-2006-2426
CVE-2009-1100
CVE-2009-1098
CVE-2009-1097
...
CPE    1
cpe:/o:ubuntu:ubuntu_linux:8.10

© SecPod Technologies