CVE-2011-0706
N/A
N/A
Summary
The JNLPClassLoader class in IcedTea-Web before 1.0.1, as used in OpenJDK Runtime Environment 1.6.0, allows remote attackers to gain privileges via unknown vectors related to multiple signers and the assignment of "an inappropriate security descriptor."
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| n/a | n/a | n/a | affected |
Weaknesses
- n/a
ADP Enrichment
CVE Program Container
Additional References
- http://lists.fedoraproject.org/pipermail/package-announce/2011-February/054115.html
- http://security.gentoo.org/glsa/glsa-201406-32.xml
- http://lists.fedoraproject.org/pipermail/package-announce/2011-February/054134.html
- http://www.securityfocus.com/bid/46439
- https://exchange.xforce.ibmcloud.com/vulnerabilities/65534
- http://dbhole.wordpress.com/2011/02/15/icedtea-web-1-0-1-released/
- http://secunia.com/advisories/43350
- http://www.debian.org/security/2011/dsa-2224
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14117
- https://bugzilla.redhat.com/show_bug.cgi?id=677332
- http://www.mandriva.com/security/advisories?name=MDVSA-2011:054
References
- http://lists.fedoraproject.org/pipermail/package-announce/2011-February/054115.html
- http://security.gentoo.org/glsa/glsa-201406-32.xml
- http://lists.fedoraproject.org/pipermail/package-announce/2011-February/054134.html
- http://www.securityfocus.com/bid/46439
- https://exchange.xforce.ibmcloud.com/vulnerabilities/65534
- http://dbhole.wordpress.com/2011/02/15/icedtea-web-1-0-1-released/
- http://secunia.com/advisories/43350
- http://www.debian.org/security/2011/dsa-2224
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14117
- https://bugzilla.redhat.com/show_bug.cgi?id=677332
- http://www.mandriva.com/security/advisories?name=MDVSA-2011:054
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.