Sun Java JRE 1.1.x up to and including 1.4.x writes temporary files with long filenames that become predictable on a file system that uses 8.3 style short names, which allows remote malicious users to write arbitrary files to known locations and facilitates the exploitation of vulnerabilities in applications that rely on unpredictable file names.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
sun jdk 1.2.0 |
||
sun jdk 1.3.0 |
||
sun jre 1.5.0 |
||
sun jre 1.1 |
||
sun jre 1.2 |
||
sun jdk 1.4.0 |
||
sun jdk 1.5.0 |
||
sun jdk 1.1.0 |
||
sun jre 1.3.0 |
||
sun jre 1.4 |