| CVE-2010-0849 |
| 기본정보 |
- 공개일 : 2010-04-02
- 변경일 : 2012-01-27
|
| CVSS 평가 |
- 위험도: 7.5
-
액세스 벡터
:
NETWORK
-
액세스 복잡성
:
낮음
-
인증
:
없음
-
기밀성 영향
:
부분
-
무결성 영향
:
부분
-
가용성 영향
:
부분
-
출처
:
http://nvd.nist.gov
-
공개일
:
2010-04-03
|
| 설명 |
Unspecified vulnerability in the Java 2D component in Oracle Java SE and Java for Business 6 Update 18, 5.0 Update 23, 1.4.2_25, and 1.3.1_27 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors. NOTE: the previous information was obtained from the March 2010 CPU. Oracle has not commented on claims from a reliable researcher that this is a heap-based buffer overflow in a decoding routine used by the JPEGImageDecoderImpl interface, which allows code execution via a crafted JPEG image.
|
| 참조 |
- CONFIRM, http://www.oracle.com/technology/deploy/security/critical-patch-updat..
- MISC, http://www.zerodayinitiative.com/advisories/ZDI-10-057/
- VUPEN, ADV-2010-1793
- VUPEN, ADV-2010-1523
- VUPEN, ADV-2010-1454
- VUPEN, ADV-2010-1191
- CONFIRM, http://www.vmware.com/support/vsphere4/doc/vsp_vc41_u1_rel_notes.html
- CONFIRM, http://www.vmware.com/security/advisories/VMSA-2011-0003.html
- BID, 39073
- BUGTRAQ, 20110211 VMSA-2011-0003 Third party component updates for VMware vCen..
- BUGTRAQ, 20100405 ZDI-10-057: Sun Java Runtime Environment JPEGImageDecoderImp..
- REDHAT, RHSA-2010:0489
- REDHAT, RHSA-2010:0471
- REDHAT, RHSA-2010:0383
- REDHAT, RHSA-2010:0338
- REDHAT, RHSA-2010:0337
- CONFIRM, http://www.oracle.com/technology/deploy/security/critical-patch-updat..
- CONFIRM, http://support.apple.com/kb/HT4171
- CONFIRM, http://support.apple.com/kb/HT4170
- SECUNIA, 43308
- SECUNIA, 40545
- SECUNIA, 40211
- SECUNIA, 39819
- SECUNIA, 39659
- SECUNIA, 39317
- SUSE, SUSE-SR:2010:017
- SUSE, SUSE-SR:2010:008
- APPLE, APPLE-SA-2010-05-18-2
- APPLE, APPLE-SA-2010-05-18-1
- HP, SSRT100179
- HP, SSRT100179
|
| 취약 소프트웨어 |
-
sun
jre
1.3.0
-
sun
sdk
1.3.1_14
-
sun
sdk
1.3.0_02
-
sun
jdk
1.5.0
-
sun
jre
1.5.0
-
sun
jdk
1.6.0
-
sun
jdk
1.5.0
-
sun
jdk
1.5.0
-
sun
jre
1.5.0
-
sun
jre
1.6.0
-
sun
jdk
1.3.1_18
-
sun
jre
1.5.0
-
sun
sdk
1.4.2_9
-
sun
jre
1.3.1
-
sun
jdk
1.5.0
-
sun
jre
1.4.2_25
-
sun
jdk
1.3.1_04
-
sun
sdk
1.3.0_05
-
sun
jre
1.6.0
-
sun
jdk
1.5.0
-
sun
jdk
1.5.0
-
sun
sdk
1.4.2_1
-
sun
jdk
1.5.0
-
sun
jre
1.4.2_23
-
sun
sdk
1.4.2_21
-
sun
jdk
1.6.0
-
sun
jre
1.6.0
-
sun
jre
1.4.2
-
sun
sdk
1.3.1_11
-
sun
jre
1.5.0
-
sun
jdk
1.5.0
-
sun
jdk
1.5.0
-
sun
jre
1.4.2
-
sun
jre
1.5.0
-
sun
sdk
1.4.2_13
-
sun
jdk
1.6.0
-
sun
sdk
1.4.2_5
-
sun
jre
1.4.2_18
-
sun
jre
1.3.1_03
-
sun
jre
1.5.0
-
sun
jdk
1.3.1_03
-
sun
jdk
1.3.1_12
-
sun
jre
1.3.0
-
sun
jre
1.3.1_12
-
sun
jre
1.4.2
-
sun
jre
1.5.0
-
sun
sdk
1.3.0
-
sun
jdk
1.3.1_14
-
sun
jre
1.3.1
-
sun
jre
1.4.2_11
-
sun
jre
1.6.0
-
sun
jre
1.5.0
-
sun
jdk
1.3.0_02
-
sun
jre
1.3.1_06
-
sun
jre
1.5.0
-
sun
jre
1.4.2_1
-
sun
sdk
1.4.2_11
-
sun
jdk
1.6.0
-
sun
sdk
1.3.1_04
-
sun
jre
1.4.2
-
sun
jdk
1.5.0
-
sun
jre
1.5.0
-
sun
jre
1.3.1_14
-
sun
sdk
1.4.2_4
-
sun
sdk
1.3.1_19
-
sun
jdk
1.3.0_01
-
sun
sdk
1.4.2_25
-
sun
jre
1.3.1_07
-
sun
sdk
1.4.2
-
sun
jre
1.3.1_08
-
sun
jdk
1.6.0
-
sun
jre
1.6.0
-
sun
jdk
1.6.0
-
sun
jre
1.4.2_22
-
sun
sdk
1.3.1_27
-
sun
jdk
1.3.1_13
-
sun
jre
1.5.0
-
sun
jre
1.4.2
-
sun
jre
1.3.1_27
-
sun
sdk
1.4.2_12
-
sun
sdk
1.3.0_01
-
sun
jre
1.4.2_14
-
sun
jre
1.3.1_11
-
sun
sdk
1.4.2_02
-
sun
jdk
1.5.0
-
sun
jre
1.3.1_24
-
sun
jre
1.3.1_20
-
sun
jre
1.6.0
-
sun
jdk
1.6.0
-
sun
jdk
1.3.1_10
-
sun
jdk
1.3.0_05
-
sun
jdk
1.6.0
-
sun
sdk
1.3.1_01a
-
sun
jre
1.5.0
-
sun
jdk
1.5.0
-
sun
sdk
1.3.1_17
-
sun
sdk
1.4.2_16
-
sun
jdk
1.5.0
-
sun
jdk
1.6.0
-
sun
jre
1.5.0
-
sun
jdk
1.3.1_05
-
sun
jdk
1.3.1_11
-
sun
jre
1.3.1_13
-
sun
jre
1.3.1_10
-
sun
jre
1.4.2_16
-
sun
jre
1.6.0
-
sun
jre
1.6.0
-
sun
jre
1.6.0
-
sun
jre
1.4.2_10
-
sun
jdk
1.3.0_04
-
sun
jdk
1.3.1_02
-
sun
jre
1.4.2_15
-
sun
jre
1.3.0
-
sun
jre
1.6.0
-
sun
jre
1.4.2
-
sun
sdk
1.4.2_6
-
sun
jre
1.3.0
-
sun
sdk
1.3.1_08
-
sun
jre
1.6.0
-
sun
sdk
1.3.1_01
-
sun
sdk
1.4.2_22
-
sun
sdk
1.3.1_23
-
sun
jdk
1.3.0_03
-
sun
sdk
1.3.0_04
-
sun
sdk
1.3.1_05
-
sun
jdk
1.6.0
-
sun
jre
1.4.2
-
sun
jre
1.3.1_09
-
sun
jdk
1.3.1_27
-
sun
sdk
1.3.1_10
-
sun
jdk
1.5.0
-
sun
jdk
1.5.0
-
sun
jre
1.4.2
-
sun
jre
1.5.0
-
sun
jre
1.6.0
-
sun
jdk
1.5.0
-
sun
sdk
1.3.1_16
-
sun
sdk
1.4.2_8
-
sun
jre
1.6.0
-
sun
sdk
1.3.1_25
-
sun
sdk
1.4.2_14
-
sun
jre
1.4.2_19
-
sun
jre
1.3.1_15
-
sun
sdk
1.3.1
-
sun
jre
1.6.0
-
sun
jre
1.5.0
-
sun
sdk
1.3.1_02
-
sun
jdk
1.5.0
-
sun
jre
1.6.0
-
sun
sdk
1.4.2_15
-
sun
jre
1.4.2
-
sun
jre
1.3.1_18
-
sun
sdk
1.3.1_21
-
sun
jdk
1.5.0
-
sun
sdk
1.3.1_06
-
sun
sdk
1.3.1_24
-
sun
sdk
1.4.2_3
-
sun
jdk
1.3.1_21
-
sun
jdk
1.5.0
-
sun
jdk
1.5.0
-
sun
jdk
1.3.1_24
-
sun
jdk
1.3.1_07
-
sun
jre
1.3.1_22
-
sun
jre
1.3.1_21
-
sun
jre
1.5.0
-
sun
jre
1.5.0
-
sun
jre
1.3.1_26
-
sun
sdk
1.3.1_26
-
sun
jre
1.5.0
-
sun
jdk
1.6.0
-
sun
jdk
1.3.1_06
-
sun
jdk
1.3.1_25
-
sun
jre
1.6.0
-
sun
jdk
1.6.0
-
sun
jre
1.5.0
-
sun
jre
1.5.0
-
sun
jre
1.4.2_20
-
sun
jre
1.3.0
-
sun
jdk
1.3.1_15
-
sun
jre
1.3.0
-
sun
jre
1.3.1_2
-
sun
sdk
1.4.2_10
-
sun
jdk
1.6.0
-
sun
jdk
1.6.0
-
sun
jre
1.3.1_25
-
sun
jre
1.4.2_24
-
sun
sdk
1.4.2_19
-
sun
jdk
1.6.0
-
sun
jre
1.3.1_19
-
sun
jdk
1.3.1_08
-
sun
jdk
1.5.0
-
sun
jdk
1.3.0
-
sun
sdk
1.4.2_18
-
sun
jdk
1.6.0
-
sun
sdk
1.4.2_24
-
sun
jdk
1.3.1_19
-
sun
jre
1.3.1_16
-
sun
jre
1.5.0
-
sun
jdk
1.6.0
-
sun
jdk
1.3.1_20
-
sun
jdk
1.5.0
-
sun
jre
1.4.2_21
-
sun
jdk
1.5.0
-
sun
sdk
1.3.1_07
-
sun
sdk
1.3.1_20
-
sun
jre
1.4.2
-
sun
jre
1.3.1_23
-
sun
jre
1.5.0
-
sun
sdk
1.4.2_17
-
sun
jdk
1.3.1_26
-
sun
jdk
1.3.1
-
sun
sdk
1.4.2_23
-
sun
sdk
1.3.0_03
-
sun
jre
1.3.1_05
-
sun
jdk
1.3.1_22
-
sun
jre
1.5.0
-
sun
jdk
1.3.1_16
-
sun
sdk
1.3.1_13
-
sun
jdk
1.6.0
-
sun
jdk
1.3.1_01
-
sun
sdk
1.3.1_18
-
sun
sdk
1.3.1_09
-
sun
jdk
1.3.1_17
-
sun
jdk
1.3.1_01a
-
sun
jdk
1.3.1_23
-
sun
sdk
1.3.1_22
-
sun
sdk
1.3.1_12
-
sun
jre
1.3.1_17
-
sun
jre
1.3.1
-
sun
jre
1.5.0
-
sun
sdk
1.3.1_15
-
sun
jdk
1.5.0
-
sun
jre
1.3.1_04
-
sun
jre
1.4.2_12
-
sun
sdk
1.3.1_03
-
sun
jre
1.4.2_17
-
sun
jdk
1.3.1_09
-
sun
sdk
1.4.2_7
-
sun
jre
1.6.0
-
sun
jre
1.4.2_13
-
sun
sdk
1.4.2_20
|