Name: CVE-2008-5354 Status: Candidate URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-5354 Reference: MISC:http://www.ximido.de/research/advisories/SM_Java-BO_200811.txt Reference: SUNALERT:244990 Reference: URL:http://sunsolve.sun.com/search/document.do?assetkey=1-26-244990-1 Stack-based buffer overflow in Java Runtime Environment (JRE) for Sun JDK and JRE 6 Update 10 and earlier; JDK and JRE 5.0 Update 16 and earlier; and SDK and JRE 1.4.2_18 and earlier allows locally-launched and possibly remote untrusted Java applications to execute arbitrary code via a JAR file with a long Main-Class manifest entry
java-1.6.0-openjdk-1.6.0.0-0.20.b09.fc9 has been pushed to the Fedora 9 stable repository. If problems still persist, please make note of it in this bug report.
java-1.6.0-openjdk-1.6.0.0-7.b12.fc10 has been pushed to the Fedora 10 stable repository. If problems still persist, please make note of it in this bug report.
Another mention of this issue: http://secunia.com/advisories/32991/
This issue has been addressed in following products: Extras for RHEL 3 Extras for RHEL 4 Extras for Red Hat Enterprise Linux 5 Via RHSA-2009:0445 https://rhn.redhat.com/errata/RHSA-2009-0445.html
This issue has been addressed in following products: Red Hat Network Satellite Server v 5.2 Via RHSA-2009:0466 https://rhn.redhat.com/errata/RHSA-2009-0466.html