This CPE summary could be partial or incomplete. Please contact us for a detailed listing.

Summary

Summuary
CPE Namecpe:/a:sun:jdk:6:update_9
Detail
VendorSunFirst view 2008-12-04
ProductJdkLast view 2009-08-06
Version6TypeApplication
Edition 
Language 
Updateupdate_9 
 
CPE Productcpe:/a:sun:jdk

Activity : Yearly

Related : CVE

 DateAlertAccess VectorAccess ComplexityAuthentification
52009-08-06CVE-2009-2625NetworkLowNone Requ...
102009-08-05CVE-2009-2675NetworkLowNone Requ...
7.52009-08-05CVE-2009-2674NetworkLowNone Requ...
7.52009-08-05CVE-2009-2673NetworkLowNone Requ...
7.52009-08-05CVE-2009-2672NetworkLowNone Requ...
Hide | Show 20 More...
 DateAlertAccess VectorAccess ComplexityAuthentification
52009-08-05CVE-2009-2671NetworkLowNone Requ...
52009-08-05CVE-2009-2670NetworkLowNone Requ...
6.42008-12-05CVE-2008-5360NetworkLowNone Requ...
9.32008-12-05CVE-2008-5359NetworkMediumNone Requ...
9.32008-12-05CVE-2008-5357NetworkMediumNone Requ...
9.32008-12-05CVE-2008-5356NetworkMediumNone Requ...
102008-12-05CVE-2008-5355NetworkLowNone Requ...
9.32008-12-05CVE-2008-5354NetworkMediumNone Requ...
102008-12-05CVE-2008-5353NetworkLowNone Requ...
7.52008-12-05CVE-2008-5351NetworkLowNone Requ...
52008-12-05CVE-2008-5350NetworkLowNone Requ...
7.12008-12-05CVE-2008-5348NetworkMediumNone Requ...
7.52008-12-05CVE-2008-5345NetworkLowNone Requ...
7.52008-12-05CVE-2008-5344NetworkLowNone Requ...
92008-12-05CVE-2008-5343NetworkLowNone Requ...
52008-12-05CVE-2008-5342NetworkLowNone Requ...
52008-12-05CVE-2008-5341NetworkLowNone Requ...
102008-12-05CVE-2008-5340NetworkLowNone Requ...
52008-12-05CVE-2008-5339NetworkLowNone Requ...

CWE : Common Weakness Enumeration

%idName
47% (8)CWE-264Permissions, Privileges, and Access Controls
17% (3)CWE-200Information Exposure
17% (3)CWE-119Failure to Constrain Operations within the Bounds of a Memory Buffer
5% (1)CWE-287Improper Authentication
5% (1)CWE-189Numeric Errors
Hide | Show 1 More...
%idName
5% (1)CWE-94Failure to Control Generation of Code ('Code Injection')

Oval Markup Language : Definitions

This CPE have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
OvalIDName
oval:org.mitre.oval:def:5601Java Web Start Bugs Let Remote Users Read/Write Files, Execute Arbitrary Code...
oval:org.mitre.oval:def:6409Multiple Security Vulnerabilities in Java Web Start and Java Plug-in May Allo...
oval:org.mitre.oval:def:6627Sun Java Multiple Code Execution and Security Bypass Vulnerabilities
oval:org.mitre.oval:def:6529Java Runtime Environment (JRE) Buffer Overflow in Processing Image Files and ...
oval:org.mitre.oval:def:6359Unspecified vunerability in the BasicService for Java Web Start (JWS) and Jav...
Hide | Show 20 More...
idName
oval:org.mitre.oval:def:5924Sun Java Web Start and Java Plug-in JAR File Privilege Escalation Vulnerability
oval:org.mitre.oval:def:6249Sun Java Web Start and Java Plug-in applet class security bypass
oval:org.mitre.oval:def:6059Sun Java Runtime Environment (JRE) Lets Remote Users Access 'localhost'
oval:org.mitre.oval:def:6549Sun Java Runtime Environment and Java Development Kit Multiple Security Vulne...
oval:org.mitre.oval:def:6424Sun Java Runtime Environment Lets Remote Users View Directory Contents
oval:org.mitre.oval:def:6212Java Runtime Environment UTF-8 Decoding Bug May Let Users Bypass Access Restr...
oval:org.mitre.oval:def:6511Sun Java Runtime Environment 'Calendar.readObject' Bug Lets Remote Applets Ga...
oval:org.mitre.oval:def:6537Sun Java Runtime Environment JAR Main-Class manifest entry buffer overflow
oval:org.mitre.oval:def:5664Sun Java Runtime Environment Java Update Fails to Validate Digital Signatures
oval:org.mitre.oval:def:6494Sun Java Runtime Environment TrueType font buffer overflow
oval:org.mitre.oval:def:6505Sun Java Runtime Environment TrueType font integer overflow
oval:org.mitre.oval:def:5841Sun Java Runtime Environment image processing code buffer overflow
oval:org.mitre.oval:def:6596Sun Java Runtime Environment temporary files weak security
oval:org.mitre.oval:def:9356XMLScanner.java in Apache Xerces2 Java, as used in Sun Java Runtime Environme...
oval:org.mitre.oval:def:8520HP-UX Running Java, Remote Increase in Privilege, Denial of Service and Other...
oval:org.mitre.oval:def:8022HP-UX Running Java, Remote Increase in Privilege, Denial of Service and Other...
oval:org.mitre.oval:def:11326The audio system in Sun Java Runtime Environment (JRE) in JDK and JRE 6 befor...
oval:org.mitre.oval:def:8259HP-UX Running Java, Remote Increase in Privilege, Denial of Service and Other...
oval:org.mitre.oval:def:11115The SOCKS proxy implementation in Sun Java Runtime Environment (JRE) in JDK a...
oval:org.mitre.oval:def:9359The proxy mechanism implementation in Sun Java Runtime Environment (JRE) in J...

Open Source Vulnerability Database (OSVDB)

idDescription
56984Apache Xerces2 Java Malformed XML Input DoS
56788Sun Java JDK / JRE Audio System Unauthorized java.lang.System Properties Access
56787Sun Java JDK / JRE WebStart (javaws.exe) JPEG Decompression Overflow
56786Sun Java JDK / JRE Pack200 JAR File Decoding Inner Class Count Overflow
56785Sun Java JDK / JRE Proxy Mechanism Implementation Arbitrary Host Connection
Hide | Show 20 More...
idDescription
56784Sun Java JDK / JRE Proxy Mechanism Implementation Unauthorized Browser Cookie...
56783Sun Java JDK / JRE SOCKS Proxy Implementation Applet Process Owner Disclosure
50517Sun Java JDK / JRE TrueType Font Processing Integer Overflow
50516Sun Java JDK / JRE TrueType Font Processing Heap Overflow
50514Sun Java JDK / JRE Java Web Start BasicService Arbitrary File Access
50513Sun Java JDK / JRE Applet Classloading Privilege Escalation
50512Sun Java JDK / JRE Jave Web Start / Plug-in HTTP Session Hijacking
50511Sun Java JDK / JRE Java Web Start SingleInstanceImpl Class SI_FILEDIR Propert...
50510Sun Java JDK / JRE Java Web Start (JWS) JNLP File System Properties Override ...
50509Sun Java JDK / JRE Java Web Start Application file: Protocol Arbitrary File A...
50508Sun Java JRE LocalHost Network Access Restriction Bypass
50505Sun Java JDK / JRE Kerberos Authentication Unspecified Remote DoS
50503Sun Java JDK / JRE Untrusted Applet User Home Directory Content Listing
50502Sun Java JDK / JRE UTF-8 Decoder Non-shortest Form Sequence Handling Weakness
50500Sun Java JDK / JRE Deserializing Calendar Object Privilege Escalation
50499Sun Java JDK / JRE Command Line Application Overflow
50498Sun Java JDK / JRE Java Update Mechanism Digital Signature Verification Weakness
50497Sun Java JDK / JRE Java Web Start Application JNLP File Handling Socket Restr...
50496Sun Java JDK / JRE Java AWT Library ConvolveOp Operation Image Handling Overflow
50495Sun Java JDK / JRE Environment Temporary File Name Prediction Weakness

ExploitDB Exploits

idDescription
16302Signed Applet Social Engineering Code Exec
16293Sun Java Calendar Deserialization Exploit
9948Sun Java Runtime and Development Kit <= 6 update 10 Calendar Deserialization ...
8753Mac OS X Java applet Remote Deserialization Remote PoC (updated)

Metasploit Exploits

idDescription
2008-12-03Sun Java Calendar Deserialization Privilege Escalation