CVE Reference: CVE-2008-5354

NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2008-5354

Description:
Stack-based buffer overflow in Java Runtime Environment (JRE) for Sun JDK and JRE 6 Update 10 and earlier; JDK and JRE 5.0 Update 16 and earlier; and SDK and JRE 1.4.2_18 and earlier allows locally-launched and possibly remote untrusted Java applications to execute arbitrary code via a JAR file with a long Main-Class manifest entry.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/47060

SUSE
  http://lists.opensuse.org/opensuse-security-announce/2009-04/msg00004.html
  http://lists.opensuse.org/opensuse-security-announce/2009-05/msg00000.html
  http://lists.opensuse.org/opensuse-security-announce/2009-01/msg00009.html
  http://lists.opensuse.org/opensuse-security-announce/2009-03/msg00001.html

SUNALERT
  http://sunsolve.sun.com/search/document.do?assetkey=1-26-244990-1

SAID
  Secunia Advisory: SA33710
  Secunia Advisory: SA33528
  Secunia Advisory: SA33709
  Secunia Advisory: SA33015
  Secunia Advisory: SA32991
  Secunia Advisory: SA38539
  Secunia Advisory: SA37386
  Secunia Advisory: SA34972
  Secunia Advisory: SA35065
  Secunia Advisory: SA34889
  Secunia Advisory: SA34605
  Secunia Advisory: SA34259
  Secunia Advisory: SA34233

REDHAT
  http://www.redhat.com/support/errata/RHSA-2009-0015.html
  http://www.redhat.com/support/errata/RHSA-2009-0445.html
  http://www.redhat.com/support/errata/RHSA-2009-0016.html
  http://rhn.redhat.com/errata/RHSA-2008-1018.html
  http://rhn.redhat.com/errata/RHSA-2008-1025.html

OVAL
  http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:6537

MISC
  http://www.ximido.de/research/advisories/SM_Java-BO_200811.txt

HP
  http://marc.info/?l=bugtraq&m=123678756409861&w=2

GENTOO
  http://security.gentoo.org/glsa/glsa-200911-02.xml

CONFIRM
  http://support.avaya.com/elmodocs2/security/ASA-2009-012.htm
  http://www116.nortel.com/pub/repository/CLARIFY/DOCUMENT/2009/03/024431-01.pdf
  http://support.nortel.com/go/main.jsp?cscat=BLTNDETAIL&DocumentOID=829914&poid=

CERT
  http://www.us-cert.gov/cas/techalerts/TA08-340A.html

BID
  32608


Return to the previous page.