Red Hat Bugzilla – Bug 253488
CVE-2007-4381 java: Vulnerability in the font parsing code
Last modified: 2013-04-12 00:56:32 EDT
Sun describes a flaw at http://sunsolve.sun.com/search/document.do?assetkey=1-26-103024-1: A vulnerability in the font parsing code in the Java Runtime Environment may allow an untrusted applet to elevate its privileges. For example, an applet may grant itself permissions to read and write local files or execute local applications that are accessible to the user running the untrusted applet.
This issue has been addressed in following products: Red Hat Enterprise Linux version 4 Extras RHEL Supplementary version 5 Via RHSA-2007:0829 https://rhn.redhat.com/errata/RHSA-2007-0829.html
This issue has been addressed in following products: RHEL Supplementary version 5 Via RHSA-2007:0956 https://rhn.redhat.com/errata/RHSA-2007-0956.html
This issue has been addressed in following products: Red Hat Enterprise Linux version 4 Extras Via RHSA-2007:1086 https://rhn.redhat.com/errata/RHSA-2007-1086.html
This issue has been addressed in following products: Red Hat Enterprise Linux version 3 Extras Via RHSA-2008:0100 https://rhn.redhat.com/errata/RHSA-2008-0100.html
This issue has been addressed in following products: Red Hat Enterprise Linux version 3 Extras Red Hat Enterprise Linux version 4 Extras RHEL Supplementary version 5 Via RHSA-2008:0132 https://rhn.redhat.com/errata/RHSA-2008-0132.html