Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2008-1188

Опубликовано: 06 мар. 2008
Источник: ubuntu
Приоритет: medium
EPSS Средний
CVSS2: 9.3

Описание

Multiple buffer overflows in the useEncodingDecl function in Java Web Start in Sun JDK and JRE 6 Update 4 and earlier, and 5.0 Update 14 and earlier, allow remote attackers to execute arbitrary code via a JNLP file with (1) a long key name in the xml header or (2) a long charset value, different issues than CVE-2008-1189, aka "The first two issues."

РелизСтатусПримечание
dapper

ignored

end of life
devel

DNE

edgy

ignored

end of life, was needed
feisty

ignored

end of life, was needed
gutsy

ignored

end of life, was needed
hardy

released

1.5.0-15-0ubuntu1
intrepid

released

1.5.0-15-0ubuntu1
jaunty

released

1.5.0-15-0ubuntu1
karmic

DNE

upstream

needed

Показывать по

РелизСтатусПримечание
dapper

DNE

devel

released

6-05-0ubuntu1
edgy

DNE

feisty

ignored

end of life, was needed
gutsy

ignored

end of life, was needed
hardy

released

6-05-0ubuntu1
intrepid

released

6-05-0ubuntu1
jaunty

released

6-05-0ubuntu1
karmic

released

6-05-0ubuntu1
upstream

needed

Показывать по

Ссылки на источники

EPSS

Процентиль: 97%
0.31494
Средний

9.3 Critical

CVSS2

Связанные уязвимости

redhat
больше 17 лет назад

Multiple buffer overflows in the useEncodingDecl function in Java Web Start in Sun JDK and JRE 6 Update 4 and earlier, and 5.0 Update 14 and earlier, allow remote attackers to execute arbitrary code via a JNLP file with (1) a long key name in the xml header or (2) a long charset value, different issues than CVE-2008-1189, aka "The first two issues."

nvd
больше 17 лет назад

Multiple buffer overflows in the useEncodingDecl function in Java Web Start in Sun JDK and JRE 6 Update 4 and earlier, and 5.0 Update 14 and earlier, allow remote attackers to execute arbitrary code via a JNLP file with (1) a long key name in the xml header or (2) a long charset value, different issues than CVE-2008-1189, aka "The first two issues."

debian
больше 17 лет назад

Multiple buffer overflows in the useEncodingDecl function in Java Web ...

github
больше 3 лет назад

Multiple buffer overflows in the useEncodingDecl function in Java Web Start in Sun JDK and JRE 6 Update 4 and earlier, and 5.0 Update 14 and earlier, allow remote attackers to execute arbitrary code via a JNLP file with (1) a long key name in the xml header or (2) a long charset value, different issues than CVE-2008-1189, aka "The first two issues."

EPSS

Процентиль: 97%
0.31494
Средний

9.3 Critical

CVSS2