Sun Java Runtime Environment Information Disclosure Vulnerability
BID:21077
Info
Sun Java Runtime Environment Information Disclosure Vulnerability
| Bugtraq ID: | 21077 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 14 2006 12:00AM |
| Updated: | Nov 16 2006 06:31PM |
| Credit: | The vendor reported this issue. |
| Vulnerable: |
Sun JRE (Windows Production Release) 1.5 _06 Sun JRE (Windows Production Release) 1.5 Sun JRE (Windows Production Release) 1.5.0.0_07 Sun JRE (Solaris Production Release) 1.5 _06 Sun JRE (Solaris Production Release) 1.5 Sun JRE (Solaris Production Release) 1.5.0.0_07 Sun JDK (Windows Production Release) 1.5 .0_05 Sun JDK (Windows Production Release) 1.5 .0_04 Sun JDK (Windows Production Release) 1.5 .0_03 Sun JDK (Windows Production Release) 1.5.0.0_06 Sun JDK (Linux Production Release) 1.5 _07 Sun JDK (Linux Production Release) 1.5 _06 Sun JDK (Linux Production Release) 1.5 .0_05 Sun JDK (Linux Production Release) 1.5 Sun JDK (Linux Production Release) 1.5.0.0_04 Sun JDK (Linux Production Release) 1.5.0.0_03 |
| Not Vulnerable: |
Sun JRE (Windows Production Release) 1.5.0.0_09 Sun JRE (Solaris Production Release) 1.5.0.0_09 Sun JDK (Windows Production Release) 1.5.0.0_09 Sun JDK (Linux Production Release) 1.5.0.0_09 |
Discussion
Sun Java Runtime Environment Information Disclosure Vulnerability
The Sun Java runtime environment is prone to an information-disclosure vulnerability. This issue is due to a design flaw in the affected application.
An attacker can exploit this issue to gain access to sensitive information. This may lead to other attacks.
The Sun Java runtime environment is prone to an information-disclosure vulnerability. This issue is due to a design flaw in the affected application.
An attacker can exploit this issue to gain access to sensitive information. This may lead to other attacks.
Exploit / POC
Sun Java Runtime Environment Information Disclosure Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected]
Currently we are not aware of any exploits for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected]
Solution / Fix
Sun Java Runtime Environment Information Disclosure Vulnerability
Solution:
The vendor released an update to address this issue. Please see the references for more information.
Solution:
The vendor released an update to address this issue. Please see the references for more information.
References
Sun Java Runtime Environment Information Disclosure Vulnerability
References:
References:
- Sun Homepage (Sun Microsystems )
- SUN Security Advisory 102622 ( A Security Vulnerability in the Java Runtime Envi (Sun Microsystems )