vendor:
JDK
by:
Unknown
7.5
CVSS
HIGH
Multiple
Unknown
CWE
Product Name: JDK
Affected Version From: Sun JDK 1.5.0_07-b03
Affected Version To: Unknown
Patch Exists: NO
Related CWE: CVE-2007-2788, CVE-2007-2789
CPE: java_development_kit:1.5.0:07-b03
Metasploit:
https://www.rapid7.com/db/vulnerabilities/linuxrpm-CESA-2008-0100/, https://www.rapid7.com/db/vulnerabilities/linuxrpm-RHSA-2007-0956/, https://www.rapid7.com/db/vulnerabilities/linuxrpm-RHSA-2008-0100/, https://www.rapid7.com/db/vulnerabilities/linuxrpm-RHSA-2007-1086/, https://www.rapid7.com/db/vulnerabilities/apple-java-cve-2007-2788/, https://www.rapid7.com/db/vulnerabilities/gentoo-linux-cve-2007-2788/, https://www.rapid7.com/db/vulnerabilities/suse-cve-2007-2788/, https://www.rapid7.com/db/vulnerabilities/linuxrpm-RHSA-2007-0829/, https://www.rapid7.com/db/vulnerabilities/linuxrpm-RHSA-2008-0261/, https://www.rapid7.com/db/vulnerabilities/linuxrpm-RHSA-2008-0524/, https://www.rapid7.com/db/vulnerabilities/vmsa-2010-0005-cve-2009-3885/, https://www.rapid7.com/db/vulnerabilities/suse-cve-2009-3885/, https://www.rapid7.com/db/vulnerabilities/vmsa-2010-0002-3-java-jre-security-update-cve-2009-3885/, https://www.rapid7.com/db/vulnerabilities/linuxrpm-RHSA-2007-1086/, https://www.rapid7.com/db/vulnerabilities/linuxrpm-CESA-2008-0100/, https://www.rapid7.com/db/vulnerabilities/linuxrpm-RHSA-2007-0956/, https://www.rapid7.com/db/vulnerabilities/linuxrpm-RHSA-2008-0100/, https://www.rapid7.com/db/vulnerabilities/gentoo-linux-cve-2007-2789/, https://www.rapid7.com/db/vulnerabilities/suse-cve-2007-2789/, https://www.rapid7.com/db/vulnerabilities/apple-java-cve-2007-2789/, https://www.rapid7.com/db/vulnerabilities/linuxrpm-RHSA-2007-0829/, https://www.rapid7.com/db/vulnerabilities/linuxrpm-RHSA-2008-0261/, https://www.rapid7.com/db/vulnerabilities/linuxrpm-RHSA-2008-0524/
Platforms Tested:
2007
Multiple vulnerabilities in Sun JDK
An attacker can exploit these issues to crash the affected application, effectively denying service. The attacker may also be able to execute arbitrary code, which may facilitate a compromise of the underlying system.
Mitigation:
Unknown