Search CVE reports


Toggle filters

671 – 680 of 724 results


CVE-2009-2689

Medium priority

Some fixes available 7 of 12

JDK13Services.getProviders in Sun Java SE 5.0 before Update 20 and 6 before Update 15, and OpenJDK, grants full privileges to instances of unspecified object types, which allows context-dependent attackers to bypass...

3 affected packages

openjdk-6, sun-java5, sun-java6

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
openjdk-6
sun-java5
sun-java6
Show less packages

CVE-2009-2476

Medium priority

Some fixes available 7 of 10

The Java Management Extensions (JMX) implementation in Sun Java SE 6 before Update 15, and OpenJDK, does not properly enforce OpenType checks, which allows context-dependent attackers to bypass intended access restrictions by...

4 affected packages

java, openjdk-6, sun-java5, sun-java6

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
java
openjdk-6
sun-java5
sun-java6
Show less packages

CVE-2009-2475

Medium priority

Some fixes available 7 of 12

Sun Java SE 5.0 before Update 20 and 6 before Update 15, and OpenJDK, might allow context-dependent attackers to obtain sensitive information via vectors involving static variables that are declared without the final keyword,...

4 affected packages

sun-java5, java, openjdk-6, sun-java6

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
sun-java5
java
openjdk-6
sun-java6
Show less packages

CVE-2009-1896

Medium priority

Some fixes available 3 of 6

The Java Web Start framework in IcedTea in OpenJDK before 1.6.0.0-20.b16.fc10 on Fedora 10, and before 1.6.0.0-27.b16.fc11 on Fedora 11, trusts an entire application when at least one of the listed jar files is trusted, which...

3 affected packages

openjdk-6, sun-java5, sun-java6

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
openjdk-6
sun-java5
sun-java6
Show less packages

CVE-2009-2625

Medium priority

Some fixes available 14 of 19

XMLScanner.java in Apache Xerces2 Java, as used in Sun Java Runtime Environment (JRE) in JDK and JRE 6 before Update 15 and JDK and JRE 5.0 before Update 20, and in other products, allows remote attackers to cause a denial of...

4 affected packages

expat, openjdk-6, sun-java5, sun-java6

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
expat
openjdk-6
sun-java5
sun-java6
Show less packages

CVE-2009-2676

Medium priority

Some fixes available 7 of 12

Unspecified vulnerability in JNLPAppletlauncher in Sun Java SE, and SE for Business, in JDK and JRE 6 Update 14 and earlier and JDK and JRE 5.0 Update 19 and earlier; and Java SE for Business in SDK and JRE 1.4.2_21 and earlier;...

3 affected packages

openjdk-6, sun-java5, sun-java6

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
openjdk-6
sun-java5
sun-java6
Show less packages

CVE-2009-2675

Medium priority

Some fixes available 7 of 12

Integer overflow in the unpack200 utility in Sun Java Runtime Environment (JRE) in JDK and JRE 6 before Update 15, and JDK and JRE 5.0 before Update 20, allows context-dependent attackers to gain privileges via unspecified length...

3 affected packages

openjdk-6, sun-java5, sun-java6

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
openjdk-6
sun-java5
sun-java6
Show less packages

CVE-2009-2674

Medium priority

Some fixes available 7 of 10

Integer overflow in javaws.exe in Sun Java Web Start in Sun Java Runtime Environment (JRE) in JDK and JRE 6 before Update 15 allows context-dependent attackers to execute arbitrary code via a crafted JPEG image that is not...

4 affected packages

openjdk-6, sun-java5, sun-java6, java

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
openjdk-6
sun-java5
sun-java6
java
Show less packages

CVE-2009-2673

Medium priority

Some fixes available 7 of 12

The proxy mechanism implementation in Sun Java Runtime Environment (JRE) in JDK and JRE 6 before Update 15, and JDK and JRE 5.0 before Update 20, allows remote attackers to bypass intended access restrictions and connect to...

3 affected packages

openjdk-6, sun-java5, sun-java6

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
openjdk-6
sun-java5
sun-java6
Show less packages

CVE-2009-2672

Medium priority

Some fixes available 7 of 12

The proxy mechanism implementation in Sun Java Runtime Environment (JRE) in JDK and JRE 6 before Update 15, and JDK and JRE 5.0 before Update 20, does not prevent access to browser cookies by untrusted (1) applets and (2) Java Web...

3 affected packages

openjdk-6, sun-java5, sun-java6

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
openjdk-6
sun-java5
sun-java6
Show less packages