6.8
CVSSv2

CVE-2008-1187

Published: 06/03/2008 Updated: 29/09/2017
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Unspecified vulnerability in Sun Java Runtime Environment (JRE) and JDK 6 Update 4 and previous versions, 5.0 Update 14 and previous versions, and SDK/JRE 1.4.2_16 and previous versions allows remote malicious users to cause a denial of service (JRE crash) and possibly execute arbitrary code via unknown vectors related to XSLT transforms.

Vulnerable Product Search on Vulmon Subscribe to Product

sun jre 6

sun jdk 6

sun jdk

sun jdk 5.0

sun jre 5.0

sun sdk 1.4.2_07

sun sdk 1.4.2_01

sun sdk 1.4.2_10

sun sdk 1.4.2_11

sun jre 1.4.2_02

sun jre 1.4.2_03

sun jre 1.4.2_12

sun jre 1.4.2_13

sun sdk 1.4.2_08

sun sdk 1.4.2_02

sun sdk 1.4.2_12

sun sdk 1.4.2_13

sun jre 1.4.2_04

sun jre 1.4.2_05

sun jre

sun sdk 1.4.2_06

sun sdk 1.4.2_05

sun sdk 1.4.2

sun sdk 1.4.2_09

sun sdk 1.4.2_1

sun sdk

sun jre 1.4.2_01

sun jre 1.4.2_10

sun jre 1.4.2_11

sun sdk 1.4.2_03

sun sdk 1.4.2_04

sun sdk 1.4.2_14

sun sdk 1.4.2_15

sun jre 1.4.2_06

sun jre 1.4.2_07

sun jre 1.4.2_1

References

CWE-264NVD-CWE-noinfohttp://sunsolve.sun.com/search/document.do?assetkey=1-26-233322-1http://www.redhat.com/support/errata/RHSA-2008-0186.htmlhttp://www.securitytracker.com/id?1019548http://secunia.com/advisories/29273http://www.us-cert.gov/cas/techalerts/TA08-066A.htmlhttp://secunia.com/advisories/29239http://lists.opensuse.org/opensuse-security-announce/2008-04/msg00000.htmlhttp://www.redhat.com/support/errata/RHSA-2008-0210.htmlhttp://secunia.com/advisories/29498http://secunia.com/advisories/29582http://dev2dev.bea.com/pub/advisory/277http://secunia.com/advisories/29841http://www.gentoo.org/security/en/glsa/glsa-200804-20.xmlhttp://security.gentoo.org/glsa/glsa-200804-28.xmlhttp://www.redhat.com/support/errata/RHSA-2008-0243.htmlhttp://www.redhat.com/support/errata/RHSA-2008-0244.htmlhttp://www.redhat.com/support/errata/RHSA-2008-0245.htmlhttp://lists.opensuse.org/opensuse-security-announce/2008-04/msg00010.htmlhttp://secunia.com/advisories/29858http://secunia.com/advisories/29999http://secunia.com/advisories/30003http://secunia.com/advisories/29897http://www.gentoo.org/security/en/glsa/glsa-200806-11.xmlhttp://download.novell.com/Download?buildid=q5exhSqeBjA~http://www.redhat.com/support/errata/RHSA-2008-0555.htmlhttp://secunia.com/advisories/31586http://www.vmware.com/security/advisories/VMSA-2008-0010.htmlhttp://support.novell.com/docs/Readmes/InfoDocument/patchbuilder/readme_5033642.htmlhttp://secunia.com/advisories/30676http://secunia.com/advisories/30780http://secunia.com/advisories/31580http://secunia.com/advisories/31497http://secunia.com/advisories/31067http://support.apple.com/kb/HT3178http://support.apple.com/kb/HT3179http://lists.apple.com/archives/security-announce//2008/Sep/msg00008.htmlhttp://secunia.com/advisories/32018http://www.redhat.com/support/errata/RHSA-2008-0267.htmlhttp://jvn.jp/en/jp/JVN04032535/index.htmlhttp://jvndb.jvn.jp/ja/contents/2008/JVNDB-2008-000016.htmlhttp://www.vupen.com/english/advisories/2008/0770/referenceshttp://www.vupen.com/english/advisories/2008/1252http://www.vupen.com/english/advisories/2008/1856/referenceshttps://exchange.xforce.ibmcloud.com/vulnerabilities/41025https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10278https://nvd.nist.gov