|
|
|
Vulnerability Note VU#931684Sun Java Management Extensions privilege escalation vulnerabilityOverviewA vulnerability in the Sun Java Management Extensions API may allow a remote attacker to execute arbitrary code.I. DescriptionAccording to Sun Microsystems:Java Management Extensions (JMX) technology provides the tools for building distributed, Web-based, modular and dynamic solutions for managing and monitoring devices, applications, and service-driven networks. An unspecified vulnerability in the JMX API may allow an untrusted Java applet to execute elevated privileges. For more information, please refer to Sun Alert 102017. II. ImpactA remote attacker may be able to execute arbitrary code.III. SolutionUpgrade JavaSun addressed this issue in the Java Development Kit (JDK) and the Java Runtime Environment (JRE) 5.0 Update 4.
References
This vulnerability was reported by Sun Microsystems. Sun credits Adam Gowdiak with providing information regarding this issue. This document was written by Jeff Gennari.
If you have feedback, comments, or additional information about this vulnerability, please send us
email. |
||||||||||||||||||||||||||||||||||||||
|
|||||||||||||||||||||||||||||||||||||||