Executive Summary
Informations | |||
---|---|---|---|
Name | CVE-2008-0657 | First vendor Publication | 2008-02-07 |
Vendor | Cve | Last vendor Modification | 2024-11-21 |
Security-Database Scoring CVSS v3
Cvss vector : N/A | |||
---|---|---|---|
Overall CVSS Score | NA | ||
Base Score | NA | Environmental Score | NA |
impact SubScore | NA | Temporal Score | NA |
Exploitabality Sub Score | NA | ||
Calculate full CVSS 3.0 Vectors scores |
Security-Database Scoring CVSS v2
Cvss vector : (AV:N/AC:L/Au:N/C:C/I:C/A:C) | |||
---|---|---|---|
Cvss Base Score | 10 | Attack Range | Network |
Cvss Impact Score | 10 | Attack Complexity | Low |
Cvss Expoit Score | 10 | Authentication | None Required |
Calculate full CVSS 2.0 Vectors scores |
Detail
Multiple unspecified vulnerabilities in the Java Runtime Environment in Sun JDK and JRE 6 Update 1 and earlier, and 5.0 Update 13 and earlier, allow context-dependent attackers to gain privileges via an untrusted (1) application or (2) applet, as demonstrated by an application or applet that grants itself privileges to (a) read local files, (b) write to local files, or (c) execute local programs. |
Original Source
Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-0657 |
CWE : Common Weakness Enumeration
% | Id | Name |
---|---|---|
100 % | CWE-264 | Permissions, Privileges, and Access Controls |
OVAL Definitions
Definition Id: oval:org.mitre.oval:def:22586 | |||
Oval ID: | oval:org.mitre.oval:def:22586 | ||
Title: | ELSA-2008:0123: java-1.5.0-sun security update (Critical) | ||
Description: | Multiple unspecified vulnerabilities in the Java Runtime Environment in Sun JDK and JRE 6 Update 1 and earlier, and 5.0 Update 13 and earlier, allow context-dependent attackers to gain privileges via an untrusted (1) application or (2) applet, as demonstrated by an application or applet that grants itself privileges to (a) read local files, (b) write to local files, or (c) execute local programs. | ||
Family: | unix | Class: | patch |
Reference(s): | ELSA-2008:0123-01 CVE-2008-0657 | Version: | 6 |
Platform(s): | Oracle Linux 5 | Product(s): | java-1.5.0-sun |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:22691 | |||
Oval ID: | oval:org.mitre.oval:def:22691 | ||
Title: | ELSA-2008:0156: java-1.5.0-bea security update (Moderate) | ||
Description: | Multiple unspecified vulnerabilities in the Java Runtime Environment in Sun JDK and JRE 6 Update 1 and earlier, and 5.0 Update 13 and earlier, allow context-dependent attackers to gain privileges via an untrusted (1) application or (2) applet, as demonstrated by an application or applet that grants itself privileges to (a) read local files, (b) write to local files, or (c) execute local programs. | ||
Family: | unix | Class: | patch |
Reference(s): | ELSA-2008:0156-02 CVE-2007-5232 CVE-2007-5239 CVE-2007-5240 CVE-2007-5273 CVE-2008-0657 | Version: | 25 |
Platform(s): | Oracle Linux 5 | Product(s): | java-1.5.0-bea |
Definition Synopsis: | |||
|
CPE : Common Platform Enumeration
OpenVAS Exploits
Date | Description |
---|---|
2009-10-13 | Name : SLES10: Security update for IBM Java 1.5.0 File : nvt/sles10_java-1_5_0-ibm4.nasl |
2009-01-23 | Name : SuSE Update for IBMJava2,IBMJava5,java-1_4_2-ibm,java-1_5_0-ibm SUSE-SA:2008... File : nvt/gb_suse_2008_025.nasl |
2008-09-24 | Name : Gentoo Security Advisory GLSA 200804-20 (sun-jdk, sun-jre-bin, emul-linux-x86... File : nvt/glsa_200804_20.nasl |
2008-09-24 | Name : Gentoo Security Advisory GLSA 200804-28 (jrockit-jdk-bin) File : nvt/glsa_200804_28.nasl |
2008-09-24 | Name : Gentoo Security Advisory GLSA 200806-11 (ibm-jdk-bin ibm-jre-bin) File : nvt/glsa_200806_11.nasl |
Open Source Vulnerability Database (OSVDB)
Id | Description |
---|---|
41147 | Sun Java JDK / JRE Unspecified Applet Handling Privilege Escalation (6529591) |
41146 | Sun Java JDK / JRE Unspecified Applet Handling Privilege Escalation (6529590) |
Nessus® Vulnerability Scanner
Date | Description |
---|---|
2013-02-22 | Name : The remote Unix host has an application that is affected by privilege escalat... File : sun_java_jre_231261_unix.nasl - Type : ACT_GATHER_INFO |
2009-08-24 | Name : The remote Red Hat host is missing one or more security updates. File : redhat-RHSA-2008-0123.nasl - Type : ACT_GATHER_INFO |
2009-08-24 | Name : The remote Red Hat host is missing one or more security updates. File : redhat-RHSA-2008-0156.nasl - Type : ACT_GATHER_INFO |
2009-08-24 | Name : The remote Red Hat host is missing one or more security updates. File : redhat-RHSA-2008-0210.nasl - Type : ACT_GATHER_INFO |
2009-07-27 | Name : The remote VMware ESX host is missing a security-related patch. File : vmware_VMSA-2008-0010.nasl - Type : ACT_GATHER_INFO |
2008-06-26 | Name : The remote Gentoo host is missing one or more security-related patches. File : gentoo_GLSA-200806-11.nasl - Type : ACT_GATHER_INFO |
2008-04-28 | Name : The remote Gentoo host is missing one or more security-related patches. File : gentoo_GLSA-200804-28.nasl - Type : ACT_GATHER_INFO |
2008-04-25 | Name : The remote SuSE 10 host is missing a security-related patch. File : suse_java-1_5_0-ibm-5183.nasl - Type : ACT_GATHER_INFO |
2008-04-22 | Name : The remote Gentoo host is missing one or more security-related patches. File : gentoo_GLSA-200804-20.nasl - Type : ACT_GATHER_INFO |
2008-03-04 | Name : The remote Windows host has an application that is affected by privilege esca... File : sun_java_jre_231261.nasl - Type : ACT_GATHER_INFO |
Sources (Detail)
Alert History
Date | Informations |
---|---|
2024-11-28 23:15:10 |
|
2024-11-28 12:14:49 |
|
2024-08-02 12:08:38 |
|
2024-08-02 01:02:35 |
|
2024-02-02 01:08:14 |
|
2024-02-01 12:02:34 |
|
2023-09-05 12:07:41 |
|
2023-09-05 01:02:25 |
|
2023-09-02 12:07:47 |
|
2023-09-02 01:02:26 |
|
2023-08-12 12:09:09 |
|
2023-08-12 01:02:26 |
|
2023-08-11 12:07:50 |
|
2023-08-11 01:02:31 |
|
2023-08-06 12:07:30 |
|
2023-08-06 01:02:27 |
|
2023-08-04 12:07:35 |
|
2023-08-04 01:02:30 |
|
2023-07-14 12:07:33 |
|
2023-07-14 01:02:27 |
|
2023-03-29 01:08:32 |
|
2023-03-28 12:02:33 |
|
2022-10-11 12:06:42 |
|
2022-10-11 01:02:17 |
|
2021-05-05 01:04:29 |
|
2021-05-04 12:07:05 |
|
2021-04-22 01:07:31 |
|
2020-05-23 01:39:05 |
|
2020-05-23 00:21:13 |
|
2019-07-31 12:02:19 |
|
2018-11-30 12:02:20 |
|
2018-10-10 12:02:17 |
|
2017-09-29 09:23:24 |
|
2016-06-28 17:11:18 |
|
2016-04-26 17:06:06 |
|
2014-02-17 10:43:42 |
|
2013-05-11 00:08:48 |
|