Secunia Logo
Netsikker nu! 2008
 
Sun Java JRE Multiple Vulnerabilities
Secunia Advisory: SA27009
Release Date: 2007-10-04
Last Update: 2007-10-09
Popularity: 35,768 views

Critical:
Highly critical
Impact: Security Bypass
Manipulation of data
Exposure of system information
Exposure of sensitive information
System access
Where: From remote
Solution Status: Vendor Patch

Software:Sun Java JDK 1.5.x
Sun Java JDK 1.6.x
Sun Java JRE 1.3.x
Sun Java JRE 1.4.x
Sun Java JRE 1.5.x / 5.x
Sun Java JRE 1.6.x / 6.x
Sun Java SDK 1.3.x
Sun Java SDK 1.4.x

Subscribe: Instant alerts on relevant vulnerabilities

CVE reference:CVE-2007-5232
CVE-2007-5236
CVE-2007-5237
CVE-2007-5238
CVE-2007-5239
CVE-2007-5240
CVE-2007-5274


Description:
Multiple vulnerabilities have been reported in Sun Java JRE (Java Runtime Environment), which can be exploited by malicious people to bypass certain security restrictions, manipulate data, disclose sensitive/system information, or potentially compromise a vulnerable system.

1) Multiple unspecified errors in the Java Runtime Environment can be exploited by e.g. a malicious applet or by using Java APIs to establish network connections to certain services on machines other than the originating host.

2) Multiple unspecified errors in Java Web Start can be exploited by a malicious applet to read/write local files or determine the location of the Java Web Start cache.

3) An unspecified error in the Java Runtime Environment can be exploited to move or copy arbitrary files on the system by e.g. tricking a user into dragging and dropping a file from an applet to a desktop application that has the proper permissions.

The vulnerabilities are reported in the following versions:
* JDK and JRE 6 Update 2 and earlier
* JDK and JRE 5.0 Update 12 and earlier
* SDK and JRE 1.4.2_15 and earlier
* SDK and JRE 1.3.1_20 and earlier

NOTE: Some vulnerabilities only affect certain versions or browsers. Please see the vendor's advisories for details.

Solution:
Update to the fixed versions.

JDK and JRE 6 Update 3:
http://java.sun.com/javase/downloads/index.jsp

JDK and JRE 5.0 Update 13:
http://java.sun.com/javase/downloads/index_jdk5.jsp

SDK and JRE 1.4.2_16:
http://java.sun.com/j2se/1.4.2/download.html

SDK and JRE 1.3.1 for Solaris 8:
http://java.sun.com/j2se/1.3/download.html

Provided and/or discovered by:
The vendor credits:
1) Billy Rios, Dan Boneh, Collin Jackson, Adam Barth, Andrew Bortz, Weidong Shao, and David Byrne
2) Peter Csepely

Changelog:
2007-10-08: Added link to US-CERT.
2007-10-08: Added CVE reference.
2007-10-09: Added CVE reference.

Original Advisory:
Sun:
http://sunsolve.sun.com/search/document.do?assetkey=1-26-103079-1
http://sunsolve.sun.com/search/document.do?assetkey=1-26-103078-1
http://sunsolve.sun.com/search/document.do?assetkey=1-26-103073-1
http://sunsolve.sun.com/search/document.do?assetkey=1-26-103072-1

Other References:
US-CERT VU#336105:
http://www.kb.cert.org/vuls/id/336105


Track this Secunia Advisory
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.

Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.

About this Secunia Advisory
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
  
Latest Advisories

7th Oct, 2008
New advisories: 19
New vulnerabilities: 68
Updated advisories: 62

Moderately // 404 views
Debian update for php5
Moderately // 326 views
Atarone CMS Multiple Vulnerabilities
Moderately // 355 views
Debian update for squid
Less // 347 views
SUSE update for mercurial
Moderately // 397 views
SUSE update for openssh
Less // 325 views
Fedora update for mediawiki

Solutions | More...  


Send Feedback to Secunia
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.

Most Popular - 3 Hours

1. phpBB Avatar Script Insertion Vulnerability // 82 views
2. phpBB Avatar Functions Information Disclosure and Deletion // 80 views
3. phpBB "url" bbcode Script Insertion Vulnerability // 72 views
4. phpBB BBcode "url" Script Insertion Vulnerability // 64 views
5. ArticleBeach Script "page" File Inclusion Vulnerability // 35 views
6. Debian update for php5 // 32 views
7. Debian update for squid // 31 views
8. MetaGauge Directory Traversal Vulnerability // 30 views
9. Juniper Products Neighbor Discovery Protocol Neighbor Solicitation Vulnerability // 28 views
10. Atarone CMS Multiple Vulnerabilities // 26 views