CVE-2008-3111
Published Jul 9, 2008
Last updated 6 years ago
Overview
- Description
- Multiple buffer overflows in Sun Java Web Start in JDK and JRE 6 before Update 4, JDK and JRE 5.0 before Update 16, and SDK and JRE 1.4.x before 1.4.2_18 allow context-dependent attackers to gain privileges via an untrusted application, as demonstrated by (a) an application that grants itself privileges to (1) read local files, (2) write to local files, or (3) execute local programs; and as demonstrated by (b) a long value associated with a java-vm-args attribute in a j2se tag in a JNLP file, which triggers a stack-based buffer overflow in the GetVMArgsOption function; aka CR 6557220.
- Source
- cve@mitre.org
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 10
- Impact score
- 10
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:C/I:C/A:C
Weaknesses
- nvd@nist.gov
- CWE-119
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:sun:jdk:5.0:update_1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6BB00A29-FEBB-4139-9E96-691EC1410EFE" }, { "criteria": "cpe:2.3:a:sun:jdk:5.0:update_10:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DD8CC179-F76E-4CC2-9CBD-69CBBA5BD532" }, { "criteria": "cpe:2.3:a:sun:jdk:5.0:update_11:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C2DC7389-9697-4EF0-9C4E-153731CDD75D" }, { "criteria": "cpe:2.3:a:sun:jdk:5.0:update_12:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C5F476C8-5466-4E6B-B73B-4ACFBB02AD5C" }, { "criteria": "cpe:2.3:a:sun:jdk:5.0:update_13:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D8C7C8C1-AA0D-4BD9-A8EC-85BBE627DE13" }, { "criteria": "cpe:2.3:a:sun:jdk:5.0:update_14:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BAF0844B-ECB1-4AF0-AA32-1B8789AC5042" }, { "criteria": "cpe:2.3:a:sun:jdk:5.0:update_15:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0EFEB813-B20D-4C8B-922D-0603CB93F72A" }, { "criteria": "cpe:2.3:a:sun:jdk:5.0:update_2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "25322D24-C5D9-43A6-87CC-1BF7FA6A3E76" }, { "criteria": "cpe:2.3:a:sun:jdk:5.0:update_3:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "400FDCDE-16DE-4BD6-81E2-4A5DA12E99CA" }, { "criteria": "cpe:2.3:a:sun:jdk:5.0:update_4:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "82C49C78-ACE3-407D-AE21-EA180633C437" }, { "criteria": "cpe:2.3:a:sun:jdk:5.0:update_5:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5F91F8A2-D473-48DC-81DA-21291DE7B6E8" }, { "criteria": "cpe:2.3:a:sun:jdk:5.0:update_6:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3E46B3B4-9E1C-4C87-A4CD-C4CE7FBCA7F6" }, { "criteria": "cpe:2.3:a:sun:jdk:5.0:update_7:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0F69C703-8541-4AA8-A66A-0292E0FCB749" }, { "criteria": "cpe:2.3:a:sun:jdk:5.0:update_8:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "99E08AB2-49AD-42C6-967F-773F2C6E188A" }, { "criteria": "cpe:2.3:a:sun:jdk:5.0:update_9:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9459F130-A3DD-4A4E-9582-4FB82619EB5A" }, { "criteria": "cpe:2.3:a:sun:jdk:6:update_1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9C9F6EA8-6A88-4485-89A3-0FDF84AB51DA" }, { "criteria": "cpe:2.3:a:sun:jdk:6:update_2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "67E0818A-3675-4293-89FE-5001E36C0F38" }, { "criteria": "cpe:2.3:a:sun:jdk:6:update_3:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "95112B98-B6B2-43FA-BF76-F518649CF3BE" }, { "criteria": "cpe:2.3:a:sun:jre:1.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D73559DD-54B4-4DF2-81BC-9109DB29DCCB" }, { "criteria": "cpe:2.3:a:sun:jre:1.4.2_01:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "27A472AF-049D-4D63-841C-1EF737E8D64D" }, { "criteria": "cpe:2.3:a:sun:jre:1.4.2_02:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DB48B161-C239-4BB5-8667-7ACA5A5437F3" }, { "criteria": "cpe:2.3:a:sun:jre:1.4.2_03:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "83629616-1814-4858-B09F-79BEA82D6F55" }, { "criteria": "cpe:2.3:a:sun:jre:1.4.2_04:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "03E8F351-F900-436E-A726-55AE31FBF832" }, { "criteria": "cpe:2.3:a:sun:jre:1.4.2_05:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F76B79C6-ADD0-4992-A4BD-423A0AD38714" }, { "criteria": "cpe:2.3:a:sun:jre:1.4.2_06:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FBFD41B5-6E33-4B00-81E8-9D91B0A03BD8" }, { "criteria": "cpe:2.3:a:sun:jre:1.4.2_07:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "685D3F7F-30B9-4EB8-90FC-66A2A067A510" }, { "criteria": "cpe:2.3:a:sun:jre:1.4.2_8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D102063B-2434-4141-98E7-2DE501AE1728" }, { "criteria": "cpe:2.3:a:sun:jre:1.4.2_9:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "03B8CD03-CD31-4F4D-BA90-59435578A4F9" }, { "criteria": "cpe:2.3:a:sun:jre:1.4.2_10:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "41A994BF-1F64-480A-8AA5-748DDD0AB68C" }, { "criteria": "cpe:2.3:a:sun:jre:1.4.2_11:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "88519F2D-AD06-4F05-BEDA-A09216F1B481" }, { "criteria": "cpe:2.3:a:sun:jre:1.4.2_12:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AC728978-368D-4B36-B149-70473E92BD1B" }, { "criteria": "cpe:2.3:a:sun:jre:1.4.2_13:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FD5187B1-CB86-48E8-A595-9FCFD9822C0C" }, { "criteria": "cpe:2.3:a:sun:jre:1.4.2_14:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6C660DE4-543A-4E9B-825D-CD099D08CBD8" }, { "criteria": "cpe:2.3:a:sun:jre:1.4.2_15:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "98C1942E-16C0-4EB2-AB57-43EC6EC9C3A2" }, { "criteria": "cpe:2.3:a:sun:jre:1.4.2_16:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "318719C9-7B01-4021-B2EF-8341254DFE6A" }, { "criteria": "cpe:2.3:a:sun:jre:1.4.2_17:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DB8FA9BA-51CA-4473-9FE1-9A32FB8C8041" }, { "criteria": "cpe:2.3:a:sun:jre:5.0:update_1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2A2379FC-BC33-4C90-97DD-ED3723172008" }, { "criteria": "cpe:2.3:a:sun:jre:5.0:update_10:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "86A1256D-7A34-4FDD-9536-82FD6497A712" }, { "criteria": "cpe:2.3:a:sun:jre:5.0:update_11:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3BB5E47A-8C17-4995-9EF8-01BFA0B702B7" }, { "criteria": "cpe:2.3:a:sun:jre:5.0:update_12:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9300FA38-C234-4BD8-ADB6-D2A29EBA81DF" }, { "criteria": "cpe:2.3:a:sun:jre:5.0:update_13:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C87F6EE3-F66B-4F15-89BA-26A4D3AD2556" }, { "criteria": "cpe:2.3:a:sun:jre:5.0:update_14:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "56F0F497-6586-408B-80AF-6BC2B9909397" }, { "criteria": "cpe:2.3:a:sun:jre:5.0:update_15:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1E022C6E-20DE-4124-9CA3-11400E13A05A" }, { "criteria": "cpe:2.3:a:sun:jre:5.0:update_2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D594E269-D722-45FC-B390-B0D38ADEC923" }, { "criteria": "cpe:2.3:a:sun:jre:5.0:update_3:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3CAA89D6-651A-4B8C-A134-C3A2CB84002A" }, { "criteria": "cpe:2.3:a:sun:jre:5.0:update_4:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B930EAFB-F2E6-4FCA-A21B-022656396A2C" }, { "criteria": "cpe:2.3:a:sun:jre:5.0:update_5:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4B20EB5F-D12A-4267-9887-C39A188EB9AE" }, { "criteria": "cpe:2.3:a:sun:jre:5.0:update_6:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "52347FDC-9983-4A64-8031-B4A50DDC9BBB" }, { "criteria": "cpe:2.3:a:sun:jre:5.0:update_7:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C95654B3-ACA0-4B0D-9F31-B9C5FB7B9C96" }, { "criteria": "cpe:2.3:a:sun:jre:5.0:update_8:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8387A041-582A-4010-9C44-672090F41A72" }, { "criteria": "cpe:2.3:a:sun:jre:5.0:update_9:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D1F2D335-CDDF-4D2E-80CA-F1A0AF92501A" }, { "criteria": "cpe:2.3:a:sun:jre:6:update_1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0F98D2BD-2AC1-4C4C-8A10-71093DCBC4E5" }, { "criteria": "cpe:2.3:a:sun:jre:6:update_2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CDC09958-5286-4C16-AB6F-63B4BDD902B3" }, { "criteria": "cpe:2.3:a:sun:jre:6:update_3:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BDE1E9E9-85EF-4ACA-902B-00225EB4324F" }, { "criteria": "cpe:2.3:a:sun:sdk:1.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BB5DB61B-ED8B-46E6-AF81-8251682D22A8" }, { "criteria": "cpe:2.3:a:sun:sdk:1.4.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "002CA86D-3090-4C7A-947A-21CB5D1ADD98" }, { "criteria": "cpe:2.3:a:sun:sdk:1.4.2_01:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E6C4CA79-9D0A-4E47-A1A4-9CBEDDCFE05E" }, { "criteria": "cpe:2.3:a:sun:sdk:1.4.2_02:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AF4E34FD-D927-42BB-8A16-031D77CB4B9E" }, { "criteria": "cpe:2.3:a:sun:sdk:1.4.2_03:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "37A3D49A-BE20-47BF-A85F-122357BAB098" }, { "criteria": "cpe:2.3:a:sun:sdk:1.4.2_04:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F45DB5D3-7F35-4531-9A82-24EB50034787" }, { "criteria": "cpe:2.3:a:sun:sdk:1.4.2_05:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4695F707-12E8-4BA4-BBE1-C21CB7213A2A" }, { "criteria": "cpe:2.3:a:sun:sdk:1.4.2_06:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C918FB49-DA13-4326-BE86-6F6BEA4CE4E1" }, { "criteria": "cpe:2.3:a:sun:sdk:1.4.2_07:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5573CAD1-39D1-4ADB-BB95-EBB554B43B4E" }, { "criteria": "cpe:2.3:a:sun:sdk:1.4.2_08:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DD02EBDF-6E51-4538-9EDD-B1DE914D09C9" }, { "criteria": "cpe:2.3:a:sun:sdk:1.4.2_09:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "53C3C0E3-5F40-412B-A4AD-A7A291DE2A08" }, { "criteria": "cpe:2.3:a:sun:sdk:1.4.2_10:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "36888382-79C8-4C97-A654-C668CD68556F" }, { "criteria": "cpe:2.3:a:sun:sdk:1.4.2_11:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F34C99E6-F9F0-4EF3-8601-B47EAE3D7273" }, { "criteria": "cpe:2.3:a:sun:sdk:1.4.2_12:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A74DD08D-CEDB-460E-BED5-78F6CAF18BF5" }, { "criteria": "cpe:2.3:a:sun:sdk:1.4.2_13:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E60560EC-6DBD-4A17-BFFA-FAD9193A0BC7" }, { "criteria": "cpe:2.3:a:sun:sdk:1.4.2_14:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E4F64FBC-DC97-4FE3-A235-18B87945AF7A" }, { "criteria": "cpe:2.3:a:sun:sdk:1.4.2_15:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "85048406-9051-4E69-94A8-5C449F3B89E7" }, { "criteria": "cpe:2.3:a:sun:sdk:1.4.2_16:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B1C88DD7-0B46-4405-BD35-60D27E2DBA14" }, { "criteria": "cpe:2.3:a:sun:sdk:1.4.2_17:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "08D23B7C-7B8C-41B8-8D94-BB0F27C7F0A8" } ], "operator": "OR" } ] } ]