Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2009-3884

Опубликовано: 03 нояб. 2009
Источник: redhat
CVSS2: 4.3

Описание

The TimeZone.getTimeZone method in Sun Java SE 5.0 before Update 22 and 6 before Update 17, and OpenJDK, allows remote attackers to determine the existence of local files via vectors related to handling of zoneinfo (aka tz) files, aka Bug Id 6824265.

Дополнительная информация

Статус:

Low
https://bugzilla.redhat.com/show_bug.cgi?id=530300OpenJDK zoneinfo file existence information leak (6824265)

4.3 Medium

CVSS2

Связанные уязвимости

ubuntu
больше 15 лет назад

The TimeZone.getTimeZone method in Sun Java SE 5.0 before Update 22 and 6 before Update 17, and OpenJDK, allows remote attackers to determine the existence of local files via vectors related to handling of zoneinfo (aka tz) files, aka Bug Id 6824265.

nvd
больше 15 лет назад

The TimeZone.getTimeZone method in Sun Java SE 5.0 before Update 22 and 6 before Update 17, and OpenJDK, allows remote attackers to determine the existence of local files via vectors related to handling of zoneinfo (aka tz) files, aka Bug Id 6824265.

debian
больше 15 лет назад

The TimeZone.getTimeZone method in Sun Java SE 5.0 before Update 22 an ...

github
около 3 лет назад

The TimeZone.getTimeZone method in Sun Java SE 5.0 before Update 22 and 6 before Update 17, and OpenJDK, allows remote attackers to determine the existence of local files via vectors related to handling of zoneinfo (aka tz) files, aka Bug Id 6824265.

oracle-oval
больше 15 лет назад

ELSA-2009-1584: java-1.6.0-openjdk security update (IMPORTANT)

4.3 Medium

CVSS2