This CPE summary could be partial or incomplete. Please contact us for a detailed listing.

Summary

Summuary
CPE Namecpe:/a:sun:jre:1.4.2_17
Detail
VendorSunFirst view 2008-07-09
ProductJreLast view 2013-02-01
Version1.4.2_17TypeApplication
Edition 
Language 
Update 
 
CPE Productcpe:/a:sun:jre

Activity : Yearly

Related : CVE

This CPE have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
 DateAlertAccess VectorAccess ComplexityAuthentification
102013-02-01CVE-2013-1481NetworkLowNone Requ...
102013-02-01CVE-2013-1480NetworkLowNone Requ...
102013-02-01CVE-2013-1478NetworkLowNone Requ...
102013-02-01CVE-2013-1476NetworkLowNone Requ...
102013-02-01CVE-2013-1475NetworkLowNone Requ...
Hide | Show 20 More...
 DateAlertAccess VectorAccess ComplexityAuthentification
42013-02-01CVE-2013-0443NetworkHighNone Requ...
102013-02-01CVE-2013-0442NetworkLowNone Requ...
102013-02-01CVE-2013-0441NetworkLowNone Requ...
52013-02-01CVE-2013-0440NetworkLowNone Requ...
52013-02-01CVE-2013-0434NetworkLowNone Requ...
6.42013-02-01CVE-2013-0432NetworkLowNone Requ...
102013-02-01CVE-2013-0428NetworkLowNone Requ...
102013-02-01CVE-2013-0426NetworkLowNone Requ...
102013-02-01CVE-2013-0425NetworkLowNone Requ...
52013-02-01CVE-2013-0424NetworkLowNone Requ...
7.62012-10-16CVE-2012-5089NetworkHighNone Requ...
02012-10-16CVE-2012-5085NetworkMediumRequires ...
7.62012-10-16CVE-2012-5084NetworkHighNone Requ...
102012-10-16CVE-2012-5083NetworkLowNone Requ...
52012-10-16CVE-2012-5081NetworkLowNone Requ...
52012-10-16CVE-2012-5079NetworkLowNone Requ...
2.62012-10-16CVE-2012-5077NetworkHighNone Requ...
52012-10-16CVE-2012-5073NetworkLowNone Requ...
2.62012-10-16CVE-2012-3216NetworkHighNone Requ...

CWE : Common Weakness Enumeration

%idName
35% (11)CWE-119Failure to Constrain Operations within the Bounds of a Memory Buffer
19% (6)CWE-264Permissions, Privileges, and Access Controls
16% (5)CWE-200Information Exposure
6% (2)CWE-399Resource Management Errors
6% (2)CWE-189Numeric Errors
Hide | Show 5 More...
%idName
3% (1)CWE-310Cryptographic Issues
3% (1)CWE-287Improper Authentication
3% (1)CWE-94Failure to Control Generation of Code ('Code Injection')
3% (1)CWE-20Improper Input Validation
3% (1)CWE-16Configuration

Oval Markup Language : Definitions

This CPE have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
OvalIDName
oval:org.mitre.oval:def:5601Java Web Start Bugs Let Remote Users Read/Write Files, Execute Arbitrary Code...
oval:org.mitre.oval:def:9565Multiple unspecified vulnerabilities in Sun Java Runtime Environment (JRE) in...
oval:org.mitre.oval:def:10219Unspecified vulnerability in the Virtual Machine in Sun Java Runtime Environm...
oval:org.mitre.oval:def:10541Multiple buffer overflows in Sun Java Web Start in JDK and JRE 6 before Updat...
oval:org.mitre.oval:def:11102Directory traversal vulnerability in Sun Java Web Start in JDK and JRE 6 befo...
Hide | Show 20 More...
idName
oval:org.mitre.oval:def:10454Unspecified vulnerability in Sun Java Web Start in JDK and JRE 5.0 before Upd...
oval:org.mitre.oval:def:9755Unspecified vulnerability in Sun Java Web Start in JDK and JRE 6 before Updat...
oval:org.mitre.oval:def:6409Multiple Security Vulnerabilities in Java Web Start and Java Plug-in May Allo...
oval:org.mitre.oval:def:6627Sun Java Multiple Code Execution and Security Bypass Vulnerabilities
oval:org.mitre.oval:def:6529Java Runtime Environment (JRE) Buffer Overflow in Processing Image Files and ...
oval:org.mitre.oval:def:6359Unspecified vunerability in the BasicService for Java Web Start (JWS) and Jav...
oval:org.mitre.oval:def:5924Sun Java Web Start and Java Plug-in JAR File Privilege Escalation Vulnerability
oval:org.mitre.oval:def:6249Sun Java Web Start and Java Plug-in applet class security bypass
oval:org.mitre.oval:def:6059Sun Java Runtime Environment (JRE) Lets Remote Users Access 'localhost'
oval:org.mitre.oval:def:6629Sun Java Runtime Environment zip File Processing Bug Lets Remote Users Read M...
oval:org.mitre.oval:def:6549Sun Java Runtime Environment and Java Development Kit Multiple Security Vulne...
oval:org.mitre.oval:def:6424Sun Java Runtime Environment Lets Remote Users View Directory Contents
oval:org.mitre.oval:def:6212Java Runtime Environment UTF-8 Decoding Bug May Let Users Bypass Access Restr...
oval:org.mitre.oval:def:6511Sun Java Runtime Environment 'Calendar.readObject' Bug Lets Remote Applets Ga...
oval:org.mitre.oval:def:6537Sun Java Runtime Environment JAR Main-Class manifest entry buffer overflow
oval:org.mitre.oval:def:5664Sun Java Runtime Environment Java Update Fails to Validate Digital Signatures
oval:org.mitre.oval:def:6494Sun Java Runtime Environment TrueType font buffer overflow
oval:org.mitre.oval:def:6505Sun Java Runtime Environment TrueType font integer overflow
oval:org.mitre.oval:def:5841Sun Java Runtime Environment image processing code buffer overflow
oval:org.mitre.oval:def:6596Sun Java Runtime Environment temporary files weak security

Open Source Vulnerability Database (OSVDB)

This CPE have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
idDescription
76511Oracle Java SE JRE Networking Component Unspecified Remote Information Disclo...
76507Oracle Java SE JRE JSSE Component Unspecified Remote Issue
76506Oracle Java SE JRE RMI Component Unspecified Remote Issue (2011-3557)
76505Oracle Java SE JRE RMI Component Unspecified Remote Issue (2011-3556)
76501Oracle Java SE JRE Swing Component Unspecified Remote Issue
Hide | Show 20 More...
idDescription
76499Oracle Java SE JRE jsound.dll MixerSequencer.nAddControllerEventCallback Func...
76497Oracle Java SE JRE Networking Component java.net.Socket API UDP Socket Satura...
76495Oracle Java SE JRE AWT Component Unspecified Remote Issue (2011-3548)
73176Oracle Java SE / JRE AWT FileDialog.show() String Copy Overflow
73085Oracle Java SE / JRE Deserialization Unspecified Remote Issue
73083Oracle Java SE / JRE Networking Unspecified Remote Information Disclosure
73080Oracle Java SE / JRE Java Web Start DLL Search Path Subversion Arbitrary DLL ...
73077Oracle Java SE / JRE Swing Unspecified Remote Code Execution
73076Oracle Java SE / JRE Soundbank Pointer Dereference Overflow
73075Oracle Java SE / JRE Soundbank Compressed Data Handling Overflow
73074Oracle Java SE / JRE Hotspot Unspecified Remote Code Execution
73071Oracle Java SE / JRE AWT Unspecified Remote Code Execution
73069Oracle Java SE / JRE ICC Profile Multiple Tag Parsing Memory Corruption
71621Oracle Java SE / Java for Business Networking Unspecified Remote DoS
71620Oracle Java SE / Java for Business Launcher Unspecified Local Issue
71618Oracle Java SE / Java for Business Deployment Unspecified Remote Information ...
71617Oracle Java SE / Java for Business Deployment Unspecified Remote Information ...
71614Oracle Java SE / Java for Business Deployment Java Runtime WWW-Authenticate R...
71611Oracle Java SE / Java for Business Sound Unspecified Remote Compromise (2010-...
71610Oracle Java SE / Java for Business Hotspot Unspecified Remote Compromise

ExploitDB Exploits

idDescription
18485Java MixerSequencer Object GM_Song Structure Handling Vulnerability
16302Signed Applet Social Engineering Code Exec
16298Sun Java JRE AWT setDiffICM Buffer Overflow
16297Java Statement.invoke() Trusted Method Chain Exploit
16294Sun Java JRE getSoundbank file:// URI Buffer Overflow
Hide | Show 3 More...
idDescription
16293Sun Java Calendar Deserialization Exploit
9948Sun Java Runtime and Development Kit <= 6 update 10 Calendar Deserialization ...
8753Mac OS X Java applet Remote Deserialization Remote PoC (updated)

Metasploit Exploits

idDescription
2009-11-04Sun Java JRE getSoundbank file:// URI Buffer Overflow
2009-11-04Sun Java JRE AWT setDiffICM Buffer Overflow
2008-12-03Sun Java Calendar Deserialization Privilege Escalation
2010-03-31Java Statement.invoke() Trusted Method Chain Privilege Escalation
2010-03-30Java MixerSequencer Object GM_Song Structure Handling Vulnerability
Hide | Show 1 More...
idDescription
2012-08-26Java 7 Applet Remote Code Execution