CVE Reference: CVE-2008-3106

NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2008-3106

Description:
Unspecified vulnerability in Sun Java Runtime Environment (JRE) in JDK and JRE 6 Update 6 and earlier and JDK and JRE 5.0 Update 15 and earlier allows remote attackers to access URLs via unknown vectors involving processing of XML data by an untrusted (1) application or (2) applet, a different vulnerability than CVE-2008-3105.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/43658

SUSE
  http://lists.opensuse.org/opensuse-security-announce/2008-09/msg00002.html
  http://lists.opensuse.org/opensuse-security-announce/2008-09/msg00000.html
  http://lists.opensuse.org/opensuse-security-announce/2008-08/msg00005.html

SUNALERT
  http://sunsolve.sun.com/search/document.do?assetkey=1-66-238628-1

ST
  1020457

SAID
  Secunia Advisory: SA37386
  Secunia Advisory: SA31736
  Secunia Advisory: SA31010
  Secunia Advisory: SA31320
  Secunia Advisory: SA31497
  Secunia Advisory: SA31600
  Secunia Advisory: SA32018
  Secunia Advisory: SA32180
  Secunia Advisory: SA32179
  Secunia Advisory: SA32436
  Secunia Advisory: SA33237
  Secunia Advisory: SA33238

REDHAT
  http://www.redhat.com/support/errata/RHSA-2008-0906.html
  http://www.redhat.com/support/errata/RHSA-2008-1045.html
  http://www.redhat.com/support/errata/RHSA-2008-1044.html
  http://www.redhat.com/support/errata/RHSA-2008-0790.html
  http://www.redhat.com/support/errata/RHSA-2008-0594.html

OVAL
  http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:10866

GENTOO
  http://security.gentoo.org/glsa/glsa-200911-02.xml

CONFIRM
  http://support.nortel.com/go/main.jsp?cscat=BLTNDETAIL&id=756717
  http://support.nortel.com/go/main.jsp?cscat=BLTNDETAIL&id=751014
  http://support.avaya.com/elmodocs2/security/ASA-2008-509.htm
  http://support.avaya.com/elmodocs2/security/ASA-2008-507.htm
  http://support.avaya.com/elmodocs2/security/ASA-2008-428.htm
  http://support.avaya.com/elmodocs2/security/ASA-2008-299.htm
  http://www.vmware.com/security/advisories/VMSA-2008-0016.html
  http://support.apple.com/kb/HT3179

CERT
  http://www.us-cert.gov/cas/techalerts/TA08-193A.html

BUGTRAQ
  http://www.securityfocus.com/archive/1/archive/1/497041/100/0/threaded
  http://marc.info/?l=bugtraq&m=122331139823057&w=2

BID
  30143

APPLE
  http://lists.apple.com/archives/security-announce//2008/Sep/msg00007.html


Return to the previous page.