CVE Vulnerabilities

CVE-2006-2426

Published: May 17, 2006 | Modified: Oct 18, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.4 MEDIUM
AV:N/AC:L/Au:N/C:N/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
LOW

Sun Java Runtime Environment (JRE) 1.5.0_6 and earlier, JDK 1.5.0_6 and earlier, and SDK 1.5.0_6 and earlier allows remote attackers to cause a denial of service (disk consumption) by using the Font.createFont function to create temporary files of arbitrary size in the %temp% directory.

Affected Software

Name Vendor Start Version End Version
Jdk Sun 1.5.0-update6 (including) 1.5.0-update6 (including)
Jre Sun 1.5.0-update6 (including) 1.5.0-update6 (including)
Sdk Sun 1.5.0_6 (including) 1.5.0_6 (including)
Extras for RHEL 4 RedHat java-1.6.0-sun-1:1.6.0.13-1jpp.1.el4 *
Extras for RHEL 4 RedHat java-1.5.0-sun-0:1.5.0.18-1jpp.1.el4 *
Red Hat Enterprise Linux 5 RedHat java-1.6.0-openjdk-1:1.6.0.0-0.30.b09.el5 *
Red Hat Network Satellite Server v 5.1 RedHat java-1.5.0-sun-0:1.5.0.22-1jpp.1.el4 *
Supplementary for Red Hat Enterprise Linux 5 RedHat java-1.6.0-sun-1:1.6.0.13-1jpp.1.el5 *
Supplementary for Red Hat Enterprise Linux 5 RedHat java-1.5.0-sun-0:1.5.0.18-1jpp.1.el5 *
Openjdk-6 Ubuntu hardy *
Openjdk-6 Ubuntu intrepid *
Sun-java5 Ubuntu dapper *
Sun-java5 Ubuntu edgy *
Sun-java5 Ubuntu feisty *
Sun-java5 Ubuntu gutsy *
Sun-java5 Ubuntu hardy *
Sun-java5 Ubuntu intrepid *
Sun-java5 Ubuntu jaunty *
Sun-java6 Ubuntu feisty *
Sun-java6 Ubuntu gutsy *
Sun-java6 Ubuntu hardy *
Sun-java6 Ubuntu intrepid *
Sun-java6 Ubuntu jaunty *
Sun-java6 Ubuntu karmic *
Sun-java6 Ubuntu lucid *

References