CVE Vulnerabilities

CVE-2003-1572

Published: Jun 01, 2009 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
9.3 HIGH
AV:N/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Sun Java Media Framework (JMF) 2.1.1 through 2.1.1c allows unsigned applets to cause a denial of service (JVM crash) and read or write unauthorized memory locations via the ReadEnv class, as demonstrated by reading environment variables using modified .data and .size fields.

Affected Software

NameVendorStart VersionEnd Version
JmfSun2.1.1 (including)2.1.1 (including)
JmfSun2.1.1a (including)2.1.1a (including)
JmfSun2.1.1b (including)2.1.1b (including)
JmfSun2.1.1c (including)2.1.1c (including)

References