Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-h9w9-hgh2-mwrp

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The IcedTea-Web plugin before 1.2.3 and 1.3.x before 1.3.2 allows remote attackers to execute arbitrary code via a crafted file that validates as both a GIF and a Java JAR file, aka "GIFAR."

The IcedTea-Web plugin before 1.2.3 and 1.3.x before 1.3.2 allows remote attackers to execute arbitrary code via a crafted file that validates as both a GIF and a Java JAR file, aka "GIFAR."

EPSS

Процентиль: 84%
0.02192
Низкий

Связанные уязвимости

ubuntu
больше 12 лет назад

The IcedTea-Web plugin before 1.2.3 and 1.3.x before 1.3.2 allows remote attackers to execute arbitrary code via a crafted file that validates as both a GIF and a Java JAR file, aka "GIFAR."

redhat
больше 12 лет назад

The IcedTea-Web plugin before 1.2.3 and 1.3.x before 1.3.2 allows remote attackers to execute arbitrary code via a crafted file that validates as both a GIF and a Java JAR file, aka "GIFAR."

nvd
больше 12 лет назад

The IcedTea-Web plugin before 1.2.3 and 1.3.x before 1.3.2 allows remote attackers to execute arbitrary code via a crafted file that validates as both a GIF and a Java JAR file, aka "GIFAR."

debian
больше 12 лет назад

The IcedTea-Web plugin before 1.2.3 and 1.3.x before 1.3.2 allows remo ...

oracle-oval
больше 12 лет назад

ELSA-2013-0753: icedtea-web security update (MODERATE)

EPSS

Процентиль: 84%
0.02192
Низкий