CVE Vulnerabilities

CVE-2007-2435

Published: May 02, 2007 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
10 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Sun Java Web Start in JDK and JRE 5.0 Update 10 and earlier, and Java Web Start in SDK and JRE 1.4.2_13 and earlier, allows remote attackers to perform unauthorized actions via an application that grants privileges to itself, related to Incorrect Use of System Classes and probably related to support for JNLP files.

Affected Software

NameVendorStart VersionEnd Version
Java_enterprise_systemSun*5.0 (including)
JreSun*1.4.2 (including)
JreSun*1.5.0 (including)
SdkSun*1.4.3_13 (including)
Extras for RHEL 3RedHatjava-1.4.2-ibm-0:1.4.2.9-1jpp.1.el3*
Extras for RHEL 4RedHatjava-1.4.2-ibm-0:1.4.2.9-1jpp.1.el4*
Extras for RHEL 4RedHatjava-1.5.0-ibm-1:1.5.0.5-1jpp.2.el4*
Red Hat Network Satellite Server v 4.2RedHatjabberd-0:2.0s10-3.38.rhn*
Red Hat Network Satellite Server v 4.2RedHatjava-1.4.2-ibm-0:1.4.2.10-1jpp.2.el4*
Red Hat Network Satellite Server v 4.2RedHatjfreechart-0:0.9.20-3.rhn*
Red Hat Network Satellite Server v 4.2RedHatopenmotif21-0:2.1.30-11.RHEL4.6*
Red Hat Network Satellite Server v 4.2RedHatperl-Crypt-CBC-0:2.24-1.el4*
Red Hat Network Satellite Server v 4.2RedHatrhn-apache-0:1.3.27-36.rhn.rhel4*
Red Hat Network Satellite Server v 4.2RedHatrhn-modjk-0:1.2.23-2rhn.rhel4*
Red Hat Network Satellite Server v 4.2RedHatrhn-modperl-0:1.29-16.rhel4*
Red Hat Network Satellite Server v 4.2RedHatrhn-modssl-0:2.8.12-8.rhn.10.rhel4*
Red Hat Network Satellite Server v 4.2RedHattomcat5-0:5.0.30-0jpp_10rh*
Red Hat Network Satellite Server v 4.2 (RHEL3)RedHatjabberd-0:2.0s10-3.37.rhn*
Red Hat Network Satellite Server v 4.2 (RHEL3)RedHatjava-1.4.2-ibm-0:1.4.2.10-1jpp.2.el3*
Red Hat Network Satellite Server v 4.2 (RHEL3)RedHatjfreechart-0:0.9.20-3.rhn*
Red Hat Network Satellite Server v 4.2 (RHEL3)RedHatopenmotif21-0:2.1.30-9.RHEL3.8*
Red Hat Network Satellite Server v 4.2 (RHEL3)RedHatperl-Crypt-CBC-0:2.24-1.el3*
Red Hat Network Satellite Server v 4.2 (RHEL3)RedHatrhn-apache-0:1.3.27-36.rhn.rhel3*
Red Hat Network Satellite Server v 4.2 (RHEL3)RedHatrhn-modjk-0:1.2.23-2rhn.rhel3*
Red Hat Network Satellite Server v 4.2 (RHEL3)RedHatrhn-modperl-0:1.29-16.rhel3*
Red Hat Network Satellite Server v 4.2 (RHEL3)RedHatrhn-modssl-0:2.8.12-8.rhn.10.rhel3*
Red Hat Network Satellite Server v 4.2 (RHEL3)RedHattomcat5-0:5.0.30-0jpp_10rh*
Red Hat Network Satellite Server v 5.0RedHatjabberd-0:2.0s10-3.38.rhn*
Red Hat Network Satellite Server v 5.0RedHatjava-1.4.2-ibm-0:1.4.2.10-1jpp.2.el4*
Red Hat Network Satellite Server v 5.0RedHatjfreechart-0:0.9.20-3.rhn*
Red Hat Network Satellite Server v 5.0RedHatopenmotif21-0:2.1.30-11.RHEL4.6*
Red Hat Network Satellite Server v 5.0RedHatperl-Crypt-CBC-0:2.24-1.el4*
Red Hat Network Satellite Server v 5.0RedHatrhn-apache-0:1.3.27-36.rhn.rhel4*
Red Hat Network Satellite Server v 5.0RedHatrhn-modjk-0:1.2.23-2rhn.rhel4*
Red Hat Network Satellite Server v 5.0RedHatrhn-modperl-0:1.29-16.rhel4*
Red Hat Network Satellite Server v 5.0RedHatrhn-modssl-0:2.8.12-8.rhn.10.rhel4*
Red Hat Network Satellite Server v 5.0RedHattomcat5-0:5.0.30-0jpp_10rh*
Supplementary for Red Hat Enterprise Linux 5RedHatjava-1.4.2-ibm-0:1.4.2.9-1jpp.1.el5*
Supplementary for Red Hat Enterprise Linux 5RedHatjava-1.5.0-ibm-1:1.5.0.5-1jpp.0.1.el5*
Sun-java5Ubuntudapper*
Sun-java5Ubuntuedgy*

References