A buffer overflow security vulnerability with the processing of fonts in the Java Runtime Environment (JRE) may allow an untrusted applet or application to elevate its privileges. For example, an untrusted applet may grant itself permissions to read and write local files or execute local applications that are accessible to the user running the untrusted applet.
This issue has been corrected via: Red Hat Network Satellite Server 5.1 (RHEL v.4 AS) (RHSA-2008:0638) Red Hat Enterprise Linux version 4 Extras (RHSA-2008:0790) RHEL Supplementary version 5 (RHSA-2008:0790)