Lucene search

K
ubuntucveUbuntu.comUB:CVE-2009-2671
HistoryAug 05, 2009 - 12:00 a.m.

CVE-2009-2671

2009-08-0500:00:00
ubuntu.com
ubuntu.com
19

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

EPSS

0.007

Percentile

80.7%

The SOCKS proxy implementation in Sun Java Runtime Environment (JRE) in JDK
and JRE 6 before Update 15, and JDK and JRE 5.0 before Update 20, allows
remote attackers to discover the username of the account that invoked an
untrusted (1) applet or (2) Java Web Start application via unspecified
vectors.

OSVersionArchitecturePackageVersionFilename
ubuntu8.04noarchopenjdk-6< 6b18-1.8.2-4ubuntu1~8.04.1UNKNOWN
ubuntu8.10noarchopenjdk-6< 6b12-0ubuntu6.5UNKNOWN
ubuntu9.04noarchopenjdk-6< 6b14-1.4.1-0ubuntu11UNKNOWN
ubuntu8.04noarchsun-java6< 6.20dlj-0ubuntu1.8.04UNKNOWN
ubuntu9.04noarchsun-java6< 6.20dlj-0ubuntu1.9.04UNKNOWN
ubuntu9.10noarchsun-java6< 6-15-1UNKNOWN
ubuntu10.04noarchsun-java6< 6-15-1UNKNOWN

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

EPSS

0.007

Percentile

80.7%