10

CVE-2009-2675

Integer overflow in the unpack200 utility in Sun Java Runtime Environment (JRE) in JDK and JRE 6 before Update 15, and JDK and JRE 5.0 before Update 20, allows context-dependent attackers to gain privileges via unspecified length fields in the header of a Pack200-compressed JAR file, which leads to a heap-based buffer overflow during decompression.

Data is provided by the National Vulnerability Database (NVD)
SunJdk Updateupdate_13 Version <= 6
SunJdk Version5.0 Updateupdate_1
SunJdk Version5.0 Updateupdate_10
SunJdk Version5.0 Updateupdate_11
SunJdk Version5.0 Updateupdate_12
SunJdk Version5.0 Updateupdate_13
SunJdk Version5.0 Updateupdate_14
SunJdk Version5.0 Updateupdate_15
SunJdk Version5.0 Updateupdate_16
SunJdk Version5.0 Updateupdate_17
SunJdk Version5.0 Updateupdate_2
SunJdk Version5.0 Updateupdate_3
SunJdk Version5.0 Updateupdate_4
SunJdk Version5.0 Updateupdate_5
SunJdk Version5.0 Updateupdate_6
SunJdk Version5.0 Updateupdate_7
SunJdk Version5.0 Updateupdate_8
SunJdk Version5.0 Updateupdate_9
SunJdk Version6 Updateupdate_1
SunJdk Version6 Updateupdate_10
SunJdk Version6 Updateupdate_11
SunJdk Version6 Updateupdate_12
SunJdk Version6 Updateupdate_2
SunJdk Version6 Updateupdate_3
SunJdk Version6 Updateupdate_4
SunJdk Version6 Updateupdate_5
SunJdk Version6 Updateupdate_6
SunJdk Version6 Updateupdate_7
SunJdk Version6 Updateupdate_8
SunJdk Version6 Updateupdate_9
SunJre Updateupdate_13 Version <= 6
SunJre Version5.0 Updateupdate_1
SunJre Version5.0 Updateupdate_10
SunJre Version5.0 Updateupdate_11
SunJre Version5.0 Updateupdate_12
SunJre Version5.0 Updateupdate_13
SunJre Version5.0 Updateupdate_14
SunJre Version5.0 Updateupdate_15
SunJre Version5.0 Updateupdate_16
SunJre Version5.0 Updateupdate_17
SunJre Version5.0 Updateupdate_19
SunJre Version5.0 Updateupdate_2
SunJre Version5.0 Updateupdate_3
SunJre Version5.0 Updateupdate_4
SunJre Version5.0 Updateupdate_5
SunJre Version5.0 Updateupdate_6
SunJre Version5.0 Updateupdate_7
SunJre Version5.0 Updateupdate_8
SunJre Version5.0 Updateupdate_9
SunJre Version6 Updateupdate_1
SunJre Version6 Updateupdate_10
SunJre Version6 Updateupdate_11
SunJre Version6 Updateupdate_12
SunJre Version6 Updateupdate_2
SunJre Version6 Updateupdate_3
SunJre Version6 Updateupdate_4
SunJre Version6 Updateupdate_5
SunJre Version6 Updateupdate_6
SunJre Version6 Updateupdate_7
SunJre Version6 Updateupdate_8
SunJre Version6 Updateupdate_9
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 6.84% 0.905
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 10 10 10
AV:N/AC:L/Au:N/C:C/I:C/A:C