← Back

CVE-2009-1096

nvd nist
Published: Mar 25, 2009Modified: Apr 23, 2026

JSON object

Loading...
10.0
Vector
AV:N/AC:L/Au:N/C:C/I:C/A:C
Exploitability: 10.0 / Impact: 10.0
Source: NVD

Description

Buffer overflow in unpack200 in Java SE Development Kit (JDK) and Java Runtime Environment (JRE) 5.0 Update 17 and earlier, and 6 Update 12 and earlier, allows remote attackers to access files or execute arbitrary code via a JAR file with crafted Pack200 headers.

Affected (61)

Products: Sun: Jdk, Jre
2 products
Jdk
Jre
Configuration A
38 vulnerable
Vulnerable SoftwareAffected Versions
Sun
Up to 1.5.0
Version 1.5.0
Version 1.5.0 update10
Version 1.5.0 update11
Version 1.5.0 update11_b03
Version 1.5.0 update12
Version 1.5.0 update13
Version 1.5.0 update14
Version 1.5.0 update15
Version 1.5.0 update16
Version 1.5.0 update1
Version 1.5.0 update2
Version 1.5.0 update3
Version 1.5.0 update4
Version 1.5.0 update5
Version 1.5.0 update6
Version 1.5.0 update7
Version 1.5.0 update7_b03
Version 1.5.0 update8
Version 1.5.0 update9
Sun
Up to 1.5.0
Version 1.5.0
Version 1.5.0 update10
Version 1.5.0 update11
Version 1.5.0 update12
Version 1.5.0 update13
Version 1.5.0 update14
Version 1.5.0 update15
Version 1.5.0 update16
Version 1.5.0 update1
Version 1.5.0 update2
Version 1.5.0 update3
Version 1.5.0 update4
Version 1.5.0 update5
Version 1.5.0 update6
Version 1.5.0 update7
Version 1.5.0 update8
Version 1.5.0 update9
Configuration B
23 vulnerable
Vulnerable SoftwareAffected Versions
Sun
Up to 1.6.0
Version 1.6.0
Version 1.6.0 update1
Version 1.6.0 update1_b06
Version 1.6.0 update2
Version 1.6.0 update_10
Version 1.6.0 update_11
Version 1.6.0 update_3
Version 1.6.0 update_4
Version 1.6.0 update_5
Version 1.6.0 update_6
Version 1.6.0 update_7
Sun
Up to 1.6.0
Version 1.6.0
Version 1.6.0 update_10
Version 1.6.0 update_11
Version 1.6.0 update_1
Version 1.6.0 update_2
Version 1.6.0 update_3
Version 1.6.0 update_4
Version 1.6.0 update_5
Version 1.6.0 update_6
Version 1.6.0 update_7

References (82)

Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.