Apple Mac OS X Java Multiple Vulnerabilities
RISK: Medium Risk
Multiple vulnerabilities have been identified in Apple Mac OS X, which could be exploited by attackers to bypass security restrictions, disclose sensitive information, cause a denial of service, or compromise an affected system.
A stack overflow error in Java Web Start command launcher when handling malformed applications, which could be exploited to cause a denial of service or execute arbitrary code.
Other issues have also been reported in Sun Java. Please refer to: Sun Java Multiple Code Execution and Security Bypass Vulnerabilities
Impact
- Remote Code Execution
System / Technologies affected
Apple Mac OS X version 10.5.8 and prior
Apple Mac OS X Server version 10.5.8 and prior
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
Upgrade to Java for Mac OS X 10.5 Update 5.
Vulnerability Identifier
- CVE-2009-0217
- CVE-2009-2205
- CVE-2009-2475
- CVE-2009-2475
- CVE-2009-2475
- CVE-2009-2476
- CVE-2009-2625
- CVE-2009-2625
- CVE-2009-2670
- CVE-2009-2670
- CVE-2009-2671
- CVE-2009-2671
- CVE-2009-2672
- CVE-2009-2672
- CVE-2009-2673
- CVE-2009-2673
- CVE-2009-2674
- CVE-2009-2675
- CVE-2009-2675
- CVE-2009-2689
- CVE-2009-2689
- CVE-2009-2689
- CVE-2009-2690
- CVE-2009-2690
- CVE-2009-2722
- CVE-2009-2723
Source
Related Link
Share with