iDEFENSE Security Advisory 2009-03-25.1...

- AV AC AU C I A
发布: 2009-03-26
修订: 2025-04-13

iDefense Security Advisory 03.25.09 - Remote exploitation of an integer signedness vulnerability in Sun Microsystems Inc.'s Java JRE could allow an attacker to execute arbitrary code with the privileges of the current user. The vulnerability exists within the font parsing code in the JRE. As part of its font API, the JRE provides the ability to load a font from a remote URL. iDefense has confirmed the existence of this vulnerability in Sun Microsystem Inc.'s Java JRE version 1.6.0_11 for Windows. Previous versions and versions for other platforms may also be affected.

0%
当前有1条漏洞利用/PoC
当前有0条受影响产品信息