Description
Multiple unspecified vulnerabilities in Sun Java JDK and JRE 5.0 Update 4 and earlier, SDK and JRE 1.4.x through 1.4.2_09 allow remote attackers to bypass Java sandbox security and obtain privileges via unspecified vectors involving the reflection APIs, aka the "second and third issues."
Affected products
- sun / jdk1.5.0 – 1.5.0
- sun / jdk1.5.0 – 1.5.0
- sun / jdk1.5.0 – 1.5.0
- sun / jdk1.5.0 – 1.5.0
- sun / jdk1.5.0 – 1.5.0
- sun / jre1.4.2 – 1.4.2
- sun / jre1.4.2_1 – 1.4.2_1
- sun / jre1.4.2_2 – 1.4.2_2
- sun / jre1.4.2_3 – 1.4.2_3
- sun / jre1.4.2_4 – 1.4.2_4
- sun / jre1.4.2_5 – 1.4.2_5
- sun / jre1.4.2_6 – 1.4.2_6
- sun / jre1.4.2_7 – 1.4.2_7
- sun / jre1.4.2_8 – 1.4.2_8
- sun / jre1.4.2_9 – 1.4.2_9
- sun / jre1.5.0 – 1.5.0
- sun / jre1.5.0 – 1.5.0
- sun / jre1.5.0 – 1.5.0
- sun / jre1.5.0 – 1.5.0
- sun / jre1.5.0 – 1.5.0
- sun / sdk1.4.2 – 1.4.2
- sun / sdk1.4.2_1 – 1.4.2_1
- sun / sdk1.4.2_2 – 1.4.2_2
- sun / sdk1.4.2_3 – 1.4.2_3
- sun / sdk1.4.2_4 – 1.4.2_4
- sun / sdk1.4.2_5 – 1.4.2_5
- sun / sdk1.4.2_6 – 1.4.2_6
- sun / sdk1.4.2_7 – 1.4.2_7
- sun / sdk1.4.2_8 – 1.4.2_8
- sun / sdk1.4.2_9 – 1.4.2_9
References
- VENDOR_ADVISORYhttp://www.vupen.com/english/advisories/2006/0828
- MISChttp://www.gentoo.org/security/en/glsa/glsa-200602-07.xml
- MISChttp://securitytracker.com/id?1015596
- VENDOR_ADVISORYhttp://www.vupen.com/english/advisories/2006/0467
- VENDOR_ADVISORYhttp://secunia.com/advisories/18884
- MISChttps://exchange.xforce.ibmcloud.com/vulnerabilities/24561
- VENDOR_ADVISORYhttp://secunia.com/advisories/18760
- MISChttp://www.kb.cert.org/vuls/id/759996
- VENDOR_ADVISORYhttp://www.vupen.com/english/advisories/2006/1398
- VENDOR_ADVISORYhttp://docs.info.apple.com/article.html?artnum=303658
- MISChttp://sunsolve.sun.com/search/document.do?assetkey=1-26-102171-1