Netscape 4's Java implementation contains an unchecked buffer in the sun.awt.windows.WDefaultFontCharset.canConvert() method. Successful exploitation could lead to arbitrary code execution when a vulnerable user visits a website hosting a malicious applet. This vulnerability only affects Netscape 4 running on Microsoft Windows platforms.
Netscape 4's Java implementation contains an unchecked buffer in the sun.awt.windows.WDefaultFontCharset.canConvert() method. Successful exploitation could lead to arbitrary code execution when a vulnerable user visits a website hosting a malicious applet. This vulnerability only affects Netscape 4 running on Microsoft Windows platforms.