4.3

CVE-2008-3106

Unspecified vulnerability in Sun Java Runtime Environment (JRE) in JDK and JRE 6 Update 6 and earlier and JDK and JRE 5.0 Update 15 and earlier allows remote attackers to access URLs via unknown vectors involving processing of XML data by an untrusted (1) application or (2) applet, a different vulnerability than CVE-2008-3105.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Sun ≫ Jdk Update update_15 Version <= 5.0
Sun ≫ Jdk Update update_6 Version <= 6
Sun ≫ Jdk Version 5.0 Update update_1
Sun ≫ Jdk Version 5.0 Update update_10
Sun ≫ Jdk Version 5.0 Update update_11
Sun ≫ Jdk Version 5.0 Update update_12
Sun ≫ Jdk Version 5.0 Update update_13
Sun ≫ Jdk Version 5.0 Update update_14
Sun ≫ Jdk Version 5.0 Update update_2
Sun ≫ Jdk Version 5.0 Update update_3
Sun ≫ Jdk Version 5.0 Update update_4
Sun ≫ Jdk Version 5.0 Update update_5
Sun ≫ Jdk Version 5.0 Update update_6
Sun ≫ Jdk Version 5.0 Update update_7
Sun ≫ Jdk Version 5.0 Update update_8
Sun ≫ Jdk Version 5.0 Update update_9
Sun ≫ Jdk Version 6 Update update_1
Sun ≫ Jdk Version 6 Update update_2
Sun ≫ Jdk Version 6 Update update_3
Sun ≫ Jdk Version 6 Update update_4
Sun ≫ Jdk Version 6 Update update_5
Sun ≫ Jre Update update_15 Version <= 5.0
Sun ≫ Jre Update update_6 Version <= 6
Sun ≫ Jre Version 5.0 Update update_1
Sun ≫ Jre Version 5.0 Update update_10
Sun ≫ Jre Version 5.0 Update update_11
Sun ≫ Jre Version 5.0 Update update_12
Sun ≫ Jre Version 5.0 Update update_13
Sun ≫ Jre Version 5.0 Update update_14
Sun ≫ Jre Version 5.0 Update update_2
Sun ≫ Jre Version 5.0 Update update_3
Sun ≫ Jre Version 5.0 Update update_4
Sun ≫ Jre Version 5.0 Update update_5
Sun ≫ Jre Version 5.0 Update update_6
Sun ≫ Jre Version 5.0 Update update_7
Sun ≫ Jre Version 5.0 Update update_8
Sun ≫ Jre Version 5.0 Update update_9
Sun ≫ Jre Version 6 Update update_1
Sun ≫ Jre Version 6 Update update_2
Sun ≫ Jre Version 6 Update update_3
Sun ≫ Jre Version 6 Update update_4
Sun ≫ Jre Version 6 Update update_5
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 3.34% 0.871
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 4.3 8.6 2.9
AV:N/AC:M/Au:N/C:P/I:N/A:N
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://secunia.com/advisories/31497
http://secunia.com/advisories/32018
http://support.apple.com/kb/HT3179
http://lists.opensuse.org/opensuse-security-announce/2008-08/msg00005.html
http://marc.info/?l=bugtraq&m=122331139823057&w=2
http://secunia.com/advisories/31010
Vendor Advisory
http://secunia.com/advisories/31600
http://secunia.com/advisories/32179
http://secunia.com/advisories/32180
http://secunia.com/advisories/32436
http://secunia.com/advisories/33237
http://secunia.com/advisories/33238
http://secunia.com/advisories/37386
http://security.gentoo.org/glsa/glsa-200911-02.xml
http://support.avaya.com/elmodocs2/security/ASA-2008-428.htm
http://support.avaya.com/elmodocs2/security/ASA-2008-507.htm
http://support.avaya.com/elmodocs2/security/ASA-2008-509.htm
http://www.redhat.com/support/errata/RHSA-2008-0594.html
http://www.redhat.com/support/errata/RHSA-2008-0906.html
http://www.redhat.com/support/errata/RHSA-2008-1044.html
http://www.redhat.com/support/errata/RHSA-2008-1045.html
http://www.securityfocus.com/archive/1/497041/100/0/threaded
http://www.us-cert.gov/cas/techalerts/TA08-193A.html
US Government Resource
http://www.vmware.com/security/advisories/VMSA-2008-0016.html
http://www.vupen.com/english/advisories/2008/2056/references
http://www.vupen.com/english/advisories/2008/2740
http://lists.opensuse.org/opensuse-security-announce/2008-09/msg00000.html
http://lists.opensuse.org/opensuse-security-announce/2008-09/msg00002.html
http://secunia.com/advisories/31320
http://secunia.com/advisories/31736
http://www.redhat.com/support/errata/RHSA-2008-0790.html
http://lists.apple.com/archives/security-announce//2008/Sep/msg00007.html
http://sunsolve.sun.com/search/document.do?assetkey=1-66-238628-1
http://support.avaya.com/elmodocs2/security/ASA-2008-299.htm
http://support.nortel.com/go/main.jsp?cscat=BLTNDETAIL&id=751014
http://support.nortel.com/go/main.jsp?cscat=BLTNDETAIL&id=756717
http://www.securityfocus.com/bid/30143
http://www.securitytracker.com/id?1020457
https://exchange.xforce.ibmcloud.com/vulnerabilities/43658
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10866