Sun Microsystems Java Virtual Machine Insecure Temporary File Vulnerability
BID:7848
Info
Sun Microsystems Java Virtual Machine Insecure Temporary File Vulnerability
| Bugtraq ID: | 7848 |
| Class: | Design Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Jun 08 2003 12:00AM |
| Updated: | Jun 08 2003 12:00AM |
| Credit: | Vulnerability discovery credited to "meme-boi" <[email protected]>. |
| Vulnerable: |
Sun JRE (Linux Production Release) 1.4.1 _02 |
| Not Vulnerable: | |
Discussion
Sun Microsystems Java Virtual Machine Insecure Temporary File Vulnerability
It has been reported that the Java Virtual Machine distributed by Sun does not safely generate temporary files. Because of this, an attacker may be able to launch a symbolic link attack.
It has been reported that the Java Virtual Machine distributed by Sun does not safely generate temporary files. Because of this, an attacker may be able to launch a symbolic link attack.
Exploit / POC
Sun Microsystems Java Virtual Machine Insecure Temporary File Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
Sun Microsystems Java Virtual Machine Insecure Temporary File Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Sun Microsystems Java Virtual Machine Insecure Temporary File Vulnerability
References:
References: