Skip to main content

Vendor/product archive

sun / jre CVEs

Beta · best-effort

426 CVEs tagged to sun / jre165 Critical, 77 High, 162 Medium, 20 Low, 2 Unrated.

CVE-2010-0088

Published Apr 1, 2010

Unspecified vulnerability in the Java Runtime Environment component in Oracle Java SE and Java for Business 6 Update 18, 5.0 Update 23, 1.4.2_25, and 1.3.1_27 allows remote attack…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-0087

Published Apr 1, 2010

Unspecified vulnerability in the Java Web Start, Java Plug-in component in Oracle Java SE and Java for Business 6 Update 18, 5.0 Update 23, 1.4.2_25, and 1.3.1_27 allows remote at…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2010-0085

Published Apr 1, 2010

Unspecified vulnerability in the Java Runtime Environment component in Oracle Java SE and Java for Business 6 Update 18, 5.0 Update 23, 1.4.2_25, and 1.3.1_27 allows remote attack…

CVSS 5.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-0084

Published Apr 1, 2010

Unspecified vulnerability in the Java Runtime Environment component in Oracle Java SE and Java for Business 6 Update 18, 5.0 Update 23, and 1.4.2_25 allows remote attackers to aff…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-0082

Published Apr 1, 2010

Unspecified vulnerability in the HotSpot Server component in Oracle Java SE and Java for Business 6 Update 18, 5.0 Update 23, 1.4.2_25, and 1.3.1_27 allows remote attackers to aff…

CVSS 5.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-0079

Published Jan 13, 2010

Multiple vulnerabilities in the JRockit component in BEA Product Suite R27.6.5 using JRE/JDK 1.4.2, 5, and 6 allow remote attackers to affect confidentiality, integrity, and avail…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2009-3886

Published Nov 9, 2009

The Java Web Start implementation in Sun Java SE 6 before Update 17 does not properly handle the interaction between a signed JAR file and a JNLP (1) application or (2) applet, wh…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2009-3885

Published Nov 9, 2009

Sun Java SE 5.0 before Update 22 and 6 before Update 17 on Windows allows remote attackers to cause a denial of service via a BMP file containing a link to a UNC share pathname fo…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-3884

Published Nov 9, 2009

The TimeZone.getTimeZone method in Sun Java SE 5.0 before Update 22 and 6 before Update 17, and OpenJDK, allows remote attackers to determine the existence of local files via vect…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-3883

Published Nov 9, 2009

Multiple unspecified vulnerabilities in the Windows Pluggable Look and Feel (PL&F) feature in the Swing implementation in Sun Java SE 5.0 before Update 22 and 6 before Update 17,…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2009-3882

Published Nov 9, 2009

Multiple unspecified vulnerabilities in the Swing implementation in Sun Java SE 5.0 before Update 22 and 6 before Update 17, and OpenJDK, have unknown impact and remote attack vec…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2009-3881

Published Nov 9, 2009

Sun Java SE 5.0 before Update 22 and 6 before Update 17, and OpenJDK, does not prevent the existence of children of a resurrected ClassLoader, which allows remote attackers to gai…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2009-3880

Published Nov 9, 2009

The Abstract Window Toolkit (AWT) in Java Runtime Environment (JRE) in Sun Java SE 5.0 before Update 22 and 6 before Update 17, and OpenJDK, does not properly restrict the objects…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-3879

Published Nov 9, 2009

Multiple unspecified vulnerabilities in the (1) X11 and (2) Win32GraphicsDevice subsystems in Sun Java SE 5.0 before Update 22 and 6 before Update 17, and OpenJDK, have unknown im…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2009-3729

Published Nov 9, 2009

Unspecified vulnerability in the TrueType font parsing functionality in Sun Java SE 5.0 before Update 22 and 6 before Update 17 allows remote attackers to cause a denial of servic…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-3728

Published Nov 9, 2009

Directory traversal vulnerability in the ICC_Profile.getInstance method in Java Runtime Environment (JRE) in Sun Java SE 5.0 before Update 22 and 6 before Update 17, and OpenJDK,…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort
Showing 276-300 of 426 CVEsPage 12 of 18