10

CVE-2008-3108

Buffer overflow in Sun Java Runtime Environment (JRE) in JDK and JRE 5.0 before Update 10, SDK and JRE 1.4.x before 1.4.2_18, and SDK and JRE 1.3.x before 1.3.1_23 allows context-dependent attackers to gain privileges via unspecified vectors related to font processing.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Sun ≫ Jre Version 1.3.1
Sun ≫ Jre Version 1.3.1_2
Sun ≫ Jre Version 1.3.1_03
Sun ≫ Jre Version 1.3.1_04
Sun ≫ Jre Version 1.3.1_05
Sun ≫ Jre Version 1.3.1_06
Sun ≫ Jre Version 1.3.1_07
Sun ≫ Jre Version 1.3.1_08
Sun ≫ Jre Version 1.3.1_09
Sun ≫ Jre Version 1.3.1_10
Sun ≫ Jre Version 1.3.1_11
Sun ≫ Jre Version 1.3.1_12
Sun ≫ Jre Version 1.3.1_13
Sun ≫ Jre Version 1.3.1_14
Sun ≫ Jre Version 1.3.1_15
Sun ≫ Jre Version 1.3.1_16
Sun ≫ Jre Version 1.3.1_17
Sun ≫ Jre Version 1.3.1_18
Sun ≫ Jre Version 1.3.1_19
Sun ≫ Jre Version 1.3.1_20
Sun ≫ Jre Version 1.3.1_21
Sun ≫ Jre Version 1.3.1_22
Sun ≫ Jre Version 1.3.1_23
Sun ≫ Jre Version 1.4.2
Sun ≫ Jre Version 1.4.2_1
Sun ≫ Jre Version 1.4.2_2
Sun ≫ Jre Version 1.4.2_3
Sun ≫ Jre Version 1.4.2_4
Sun ≫ Jre Version 1.4.2_5
Sun ≫ Jre Version 1.4.2_6
Sun ≫ Jre Version 1.4.2_7
Sun ≫ Jre Version 1.4.2_8
Sun ≫ Jre Version 1.4.2_9
Sun ≫ Jre Version 1.4.2_10
Sun ≫ Jre Version 1.4.2_11
Sun ≫ Jre Version 1.4.2_12
Sun ≫ Jre Version 1.4.2_13
Sun ≫ Jre Version 1.4.2_14
Sun ≫ Jre Version 1.4.2_15
Sun ≫ Jre Version 1.4.2_16
Sun ≫ Jre Version 1.4.2_17
Sun ≫ Jre Version 1.4.2_18
Sun ≫ Jre Version 1.5.0 Update -
Sun ≫ Jre Version 1.5.0 Update update1
Sun ≫ Jre Version 1.5.0 Update update10
Sun ≫ Jre Version 1.5.0 Update update2
Sun ≫ Jre Version 1.5.0 Update update3
Sun ≫ Jre Version 1.5.0 Update update4
Sun ≫ Jre Version 1.5.0 Update update5
Sun ≫ Jre Version 1.5.0 Update update6
Sun ≫ Jre Version 1.5.0 Update update7
Sun ≫ Jre Version 1.5.0 Update update8
Sun ≫ Jre Version 1.5.0 Update update9
Sun ≫ Jdk Version 1.5.0 Update -
Sun ≫ Jdk Version 1.5.0 Update update1
Sun ≫ Jdk Version 1.5.0 Update update10
Sun ≫ Jdk Version 1.5.0 Update update2
Sun ≫ Jdk Version 1.5.0 Update update3
Sun ≫ Jdk Version 1.5.0 Update update4
Sun ≫ Jdk Version 1.5.0 Update update5
Sun ≫ Jdk Version 1.5.0 Update update6
Sun ≫ Jdk Version 1.5.0 Update update7
Sun ≫ Jdk Version 1.5.0 Update update7_b03
Sun ≫ Jdk Version 1.5.0 Update update8
Sun ≫ Jdk Version 1.5.0 Update update9
Sun ≫ Sdk Version 1.3.1
Sun ≫ Sdk Version 1.3.1_01
Sun ≫ Sdk Version 1.3.1_01a
Sun ≫ Sdk Version 1.3.1_02
Sun ≫ Sdk Version 1.3.1_03
Sun ≫ Sdk Version 1.3.1_04
Sun ≫ Sdk Version 1.3.1_05
Sun ≫ Sdk Version 1.3.1_06
Sun ≫ Sdk Version 1.3.1_07
Sun ≫ Sdk Version 1.3.1_08
Sun ≫ Sdk Version 1.3.1_09
Sun ≫ Sdk Version 1.3.1_10
Sun ≫ Sdk Version 1.3.1_11
Sun ≫ Sdk Version 1.3.1_12
Sun ≫ Sdk Version 1.3.1_13
Sun ≫ Sdk Version 1.3.1_14
Sun ≫ Sdk Version 1.3.1_15
Sun ≫ Sdk Version 1.3.1_16
Sun ≫ Sdk Version 1.3.1_17
Sun ≫ Sdk Version 1.3.1_18
Sun ≫ Sdk Version 1.3.1_19
Sun ≫ Sdk Version 1.3.1_20
Sun ≫ Sdk Version 1.3.1_21
Sun ≫ Sdk Version 1.3.1_22
Sun ≫ Sdk Version 1.3.1_23
Sun ≫ Sdk Version 1.4.2
Sun ≫ Sdk Version 1.4.2_1
Sun ≫ Sdk Version 1.4.2_2
Sun ≫ Sdk Version 1.4.2_02
Sun ≫ Sdk Version 1.4.2_03
Sun ≫ Sdk Version 1.4.2_3
Sun ≫ Sdk Version 1.4.2_04
Sun ≫ Sdk Version 1.4.2_4
Sun ≫ Sdk Version 1.4.2_5
Sun ≫ Sdk Version 1.4.2_6
Sun ≫ Sdk Version 1.4.2_7
Sun ≫ Sdk Version 1.4.2_8
Sun ≫ Sdk Version 1.4.2_08
Sun ≫ Sdk Version 1.4.2_09
Sun ≫ Sdk Version 1.4.2_9
Sun ≫ Sdk Version 1.4.2_10
Sun ≫ Sdk Version 1.4.2_11
Sun ≫ Sdk Version 1.4.2_12
Sun ≫ Sdk Version 1.4.2_13
Sun ≫ Sdk Version 1.4.2_14
Sun ≫ Sdk Version 1.4.2_15
Sun ≫ Sdk Version 1.4.2_16
Sun ≫ Sdk Version 1.4.2_17
Sun ≫ Sdk Version 1.4.2_18
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 4.61% 0.905
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 10 10 10
AV:N/AC:L/Au:N/C:C/I:C/A:C
CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.

http://secunia.com/advisories/31497
Third Party Advisory
http://lists.apple.com/archives/security-announce//2008/Sep/msg00008.html
Third Party Advisory
Mailing List
http://secunia.com/advisories/32018
Third Party Advisory
http://support.apple.com/kb/HT3178
Third Party Advisory
http://support.apple.com/kb/HT3179
Third Party Advisory
http://lists.opensuse.org/opensuse-security-announce/2008-08/msg00005.html
Third Party Advisory
Mailing List
http://marc.info/?l=bugtraq&m=122331139823057&w=2
Third Party Advisory
Mailing List
http://secunia.com/advisories/31010
Third Party Advisory
http://secunia.com/advisories/31600
Third Party Advisory
http://secunia.com/advisories/32179
Third Party Advisory
http://secunia.com/advisories/32180
Third Party Advisory
http://secunia.com/advisories/33237
Third Party Advisory
http://secunia.com/advisories/37386
Third Party Advisory
http://security.gentoo.org/glsa/glsa-200911-02.xml
Third Party Advisory
http://support.avaya.com/elmodocs2/security/ASA-2008-507.htm
Third Party Advisory
http://www.redhat.com/support/errata/RHSA-2008-1044.html
Third Party Advisory
http://www.securityfocus.com/archive/1/497041/100/0/threaded
Third Party Advisory
VDB Entry
http://www.us-cert.gov/cas/techalerts/TA08-193A.html
Third Party Advisory
US Government Resource
http://www.vmware.com/security/advisories/VMSA-2008-0016.html
Third Party Advisory
http://www.vupen.com/english/advisories/2008/2056/references
Third Party Advisory
http://www.vupen.com/english/advisories/2008/2740
Third Party Advisory
http://lists.opensuse.org/opensuse-security-announce/2008-09/msg00000.html
Third Party Advisory
Mailing List
http://lists.opensuse.org/opensuse-security-announce/2008-09/msg00002.html
Third Party Advisory
Mailing List
http://secunia.com/advisories/31320
Third Party Advisory
http://secunia.com/advisories/31736
Third Party Advisory
http://secunia.com/advisories/33236
Third Party Advisory
http://www.redhat.com/support/errata/RHSA-2008-0790.html
Third Party Advisory
http://www.redhat.com/support/errata/RHSA-2008-1043.html
Third Party Advisory
http://support.nortel.com/go/main.jsp?cscat=BLTNDETAIL&id=751014
Third Party Advisory
http://support.nortel.com/go/main.jsp?cscat=BLTNDETAIL&id=756717
Third Party Advisory
http://sunsolve.sun.com/search/document.do?assetkey=1-66-238666-1
Broken Link
http://support.avaya.com/elmodocs2/security/ASA-2008-300.htm
Third Party Advisory
http://www.securityfocus.com/bid/30147
Third Party Advisory
VDB Entry
http://www.securitytracker.com/id?1020461
Third Party Advisory
VDB Entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/43656
VDB Entry