Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2011-2513

Опубликовано: 14 мая 2014
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 5

Описание

The Java Network Launching Protocol (JNLP) implementation in IcedTea6 1.9.x before 1.9.9 and before 1.8.9, and IcedTea-Web 1.1.x before 1.1.1 and before 1.0.4, allows remote attackers to obtain the username and full path of the home and cache directories by accessing properties of the ClassLoader.

РелизСтатусПримечание
devel

not-affected

1.1.1-1ubuntu1
hardy

DNE

lucid

not-affected

1.2-2ubuntu0.10.04.1
maverick

DNE

natty

released

1.1.1-0ubuntu1~11.04.1
oneiric

not-affected

1.1.1-1ubuntu1
upstream

released

1.1.1

Показывать по

РелизСтатусПримечание
devel

not-affected

uses icedtea-web
hardy

released

6b27-1.12.3-0ubuntu1~08.04.1
lucid

released

6b20-1.9.9-0ubuntu1~10.04.2
maverick

released

6b20-1.9.9-0ubuntu1~10.10.2
natty

not-affected

uses icedtea-web
oneiric

not-affected

uses icedtea-web
upstream

released

1.9.9

Показывать по

РелизСтатусПримечание
devel

not-affected

uses icedtea-web
hardy

DNE

lucid

released

6b18-1.8.8-0ubuntu1~10.04.2+1.8.9
maverick

released

6b18-1.8.8-0ubuntu1~10.10.2+1.8.9
natty

not-affected

uses icedtea-web
oneiric

not-affected

uses icedtea-web
upstream

released

1.8.9

Показывать по

РелизСтатусПримечание
devel

DNE

hardy

ignored

end of life
lucid

DNE

maverick

DNE

natty

DNE

oneiric

DNE

upstream

not-affected

Показывать по

РелизСтатусПримечание
devel

DNE

hardy

not-affected

lucid

not-affected

maverick

not-affected

natty

not-affected

oneiric

not-affected

upstream

not-affected

Показывать по

EPSS

Процентиль: 64%
0.00479
Низкий

5 Medium

CVSS2

Связанные уязвимости

redhat
почти 14 лет назад

The Java Network Launching Protocol (JNLP) implementation in IcedTea6 1.9.x before 1.9.9 and before 1.8.9, and IcedTea-Web 1.1.x before 1.1.1 and before 1.0.4, allows remote attackers to obtain the username and full path of the home and cache directories by accessing properties of the ClassLoader.

nvd
около 11 лет назад

The Java Network Launching Protocol (JNLP) implementation in IcedTea6 1.9.x before 1.9.9 and before 1.8.9, and IcedTea-Web 1.1.x before 1.1.1 and before 1.0.4, allows remote attackers to obtain the username and full path of the home and cache directories by accessing properties of the ClassLoader.

debian
около 11 лет назад

The Java Network Launching Protocol (JNLP) implementation in IcedTea6 ...

github
около 3 лет назад

The Java Network Launching Protocol (JNLP) implementation in IcedTea6 1.9.x before 1.9.9 and before 1.8.9, and IcedTea-Web 1.1.x before 1.1.1 and before 1.0.4, allows remote attackers to obtain the username and full path of the home and cache directories by accessing properties of the ClassLoader.

oracle-oval
почти 14 лет назад

ELSA-2011-1100: icedtea-web security update (MODERATE)

EPSS

Процентиль: 64%
0.00479
Низкий

5 Medium

CVSS2

Уязвимость CVE-2011-2513