Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2009-3884

Опубликовано: 03 нояб. 2009
Источник: redhat
CVSS2: 4.3
EPSS Низкий

Описание

The TimeZone.getTimeZone method in Sun Java SE 5.0 before Update 22 and 6 before Update 17, and OpenJDK, allows remote attackers to determine the existence of local files via vectors related to handling of zoneinfo (aka tz) files, aka Bug Id 6824265.

Дополнительная информация

Статус:

Low
https://bugzilla.redhat.com/show_bug.cgi?id=530300OpenJDK zoneinfo file existence information leak (6824265)

EPSS

Процентиль: 79%
0.01349
Низкий

4.3 Medium

CVSS2

Связанные уязвимости

ubuntu
больше 15 лет назад

The TimeZone.getTimeZone method in Sun Java SE 5.0 before Update 22 and 6 before Update 17, and OpenJDK, allows remote attackers to determine the existence of local files via vectors related to handling of zoneinfo (aka tz) files, aka Bug Id 6824265.

nvd
больше 15 лет назад

The TimeZone.getTimeZone method in Sun Java SE 5.0 before Update 22 and 6 before Update 17, and OpenJDK, allows remote attackers to determine the existence of local files via vectors related to handling of zoneinfo (aka tz) files, aka Bug Id 6824265.

debian
больше 15 лет назад

The TimeZone.getTimeZone method in Sun Java SE 5.0 before Update 22 an ...

github
больше 3 лет назад

The TimeZone.getTimeZone method in Sun Java SE 5.0 before Update 22 and 6 before Update 17, and OpenJDK, allows remote attackers to determine the existence of local files via vectors related to handling of zoneinfo (aka tz) files, aka Bug Id 6824265.

oracle-oval
больше 15 лет назад

ELSA-2009-1584: java-1.6.0-openjdk security update (IMPORTANT)

EPSS

Процентиль: 79%
0.01349
Низкий

4.3 Medium

CVSS2