IcedTea-Web memory corruption
SecurityVulns ID:12705
Threat Level:
Affected:ICEDTEA : icedtea-web 1.3
CVE:CVE-2012-4540 (Off-by-one error in the invoke function in in IcedTea-Web 1.1.x before 1.1.7, 1.2.x before 1.2.2, and 1.3.x before 1.3.1 allows remote attackers to obtain sensitive information, cause a denial of service (crash), or possibly execute arbitrary code via a crafted webpage that triggers a heap-based buffer overflow, related to an error message and a "triggering event attached to applet.")
