Red Hat Bugzilla – Bug 454605
CVE-2008-3111 Java Web Start Buffer overflow vulnerabilities (6557220)
Last modified: 2010-12-20 17:01:45 EST
Sunalert, 238905, First Issue Buffer overflow vulnerabilities in Java Web Start may allow an untrusted Java Web Start application to elevate its privileges. For example, an untrusted Java Web Start application may grant itself permissions to read and write local files or execute local applications that are accessible to the user running the untrusted application.
This issue has been corrected via: Red Hat Enterprise Linux version 4 Extras (RHSA-2008:0595 (java-1.5.0-sun) and RHSA-2008:0790 (java-1.5.0-ibm)) RHEL Supplementary version 5 (RHSA-2008:0595 (java-1.5.0-sun) and RHSA-2008:0790 (java-1.5.0-ibm)) Red Hat Network Satellite Server 5.1 (RHEL v.4 AS) (RHSA-2008:0636 (java-1.5.0-sun) and RHSA-2008:0638 (java-1.5.0-ibm))