Integer overflow in javaws.exe in Sun Java Web Start in Sun Java Runtime Environment (JRE) in JDK and JRE 6 before Update 15 allows context-dependent attackers to execute arbitrary code via a crafted JPEG image that is not properly handled during display to a splash screen, which triggers a heap-based buffer overflow.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2009-08-05 12:30
Updated : 2018-10-30 09:25
NVD link : CVE-2009-2674
Mitre link : CVE-2009-2674
JSON object : View
CWE
CWE-264
Permissions, Privileges, and Access Controls
Products Affected
sun
- jdk
- jre