Computer Security
[EN] securityvulns.ru
no-pyccku



See also
  SUN : JRE 1.6
  BLACKDOWN : Blackdown JRE 1.4
  SUN : JRE 1.5
  SUN : JRE 1.3
  SUN : JRE 1.1
  SUN : JRE 1.2
Name:ORACLE : JRE 1.4

9!Oracle Java multiple security vulnerabilities
updated since 24.10.2011
document Quarterly CPU fixes 20 different vulnerabilities.
7!Sun Java multiple security vulnerabilities
document 8 different vulnerabilities, including privilege escalation, sandbox protection bypass and code excutions.
7!Sun Java JRE / JDK multiple security vulnerabilities
updated since 07.03.2008
document Vulnerabilities on image parsing.
6!Sun Java JRE / JDK multiple security vulnerabilities
updated since 29.10.2007
document Multiple sandbox restriction bypass vulnerabilities.
7!Java Web Start directory traversal
document Directory traversal allows to bypass sandbox environment.
8!Sun Java memory corruption
updated since 18.01.2007
document Memory corruption on GIF files parsing with 0 width block. Can be used for hidden malware installation.
8!Sun Java Runtime Environment multiple security vulnerabilities
document Multiple vulnerabilities allow sandbox protection bypass and system functions access.
 Java applets stack overflow
document Recursive array definition leads to stack overflow.
7!Sun Java sandbox protection bypass
document It's possible to bypass sandbox with "reflection" API. This vulnerability can be used for silent trojan installation.
9!Sun Java JRE sandbox protection bypass
updated since 29.11.2005
document Few vulnerabilities allow applets to write local files and execute applications.
6!Sun Java / BlackDown Java sandbox protection bypass
document Applet can bypass sandbox limitation to exefute privileged functions.
7!Sun Java plugin sandbox protection bypass
document It's possible to break sandbox protection and access local files and applications.
 Java InitialDirContext DoS
document Integer overflow on large number of name resolutions.
6!JRE/JDK/WINAMP/ICQ/MediaPlayer sound schema files download
updated since 17.07.2002
document ICQ sound schemas are downloaded without user's intervation. It allows to upload file to known location.
 SUN virtual java machine DoS
document Invalid fonts handling can crash virtual machine under Windows.
 Multiple jre/jdk installation symbolic link bugs
   
8!JRE/JDK sandbox breaking
document By using / instead of . in class name it's possible to bypass sandbox restrictions.
 SUN jdk crossite scripting
document jdk undocumented static variable may allow data exchange between sites.
8!Code execution bugs in virtual Java machines
document Bug in data conversion routines
                    

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru
test server