Common Vulnerabilities and Exposures assigned an identifier CVE-2009-1099 to the following vulnerability: Integer signedness error in Java SE Development Kit (JDK) and Java Runtime Environment (JRE) 5.0 Update 17 and earlier, and 6 Update 12 and earlier, allows remote attackers to access files or execute arbitrary code via a crafted Type1 font, which triggers a buffer overflow. References: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-1099 http://sunsolve.sun.com/search/document.do?assetkey=1-21-118669-19-1 http://sunsolve.sun.com/search/document.do?assetkey=1-26-254571-1
This issue has been addressed in following products: Extras for RHEL 4 Extras for Red Hat Enterprise Linux 5 Via RHSA-2009:0392 https://rhn.redhat.com/errata/RHSA-2009-0392.html
This issue has been addressed in following products: Extras for RHEL 4 Extras for Red Hat Enterprise Linux 5 Via RHSA-2009:0394 https://rhn.redhat.com/errata/RHSA-2009-0394.html
This issue has been addressed in following products: Extras for RHEL 4 Extras for Red Hat Enterprise Linux 5 Via RHSA-2009:1038 https://rhn.redhat.com/errata/RHSA-2009-1038.html
This issue has been addressed in following products: Extras for RHEL 4 Extras for Red Hat Enterprise Linux 5 Via RHSA-2009:1198 https://rhn.redhat.com/errata/RHSA-2009-1198.html
This issue has been addressed in following products: Red Hat Network Satellite Server v 5.1 Via RHSA-2009:1662 https://rhn.redhat.com/errata/RHSA-2009-1662.html
This issue has been addressed in following products: Red Hat Network Satellite Server v 5.3 Via RHSA-2010:0043 https://rhn.redhat.com/errata/RHSA-2010-0043.html