CVE Vulnerabilities

CVE-2008-5360

Published: Dec 05, 2008 | Modified: Oct 09, 2019
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.4 MEDIUM
AV:N/AC:L/Au:N/C:P/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

Java Runtime Environment (JRE) for Sun JDK and JRE 6 Update 10 and earlier; JDK and JRE 5.0 Update 16 and earlier; SDK and JRE 1.4.2_18 and earlier; and SDK and JRE 1.3.1_23 and earlier creates temporary files with predictable file names, which allows attackers to write malicious JAR files via unknown vectors.

Affected Software

Name Vendor Start Version End Version
Jdk Sun 1.5.0 (including) 1.5.0 (including)
Jdk Sun 1.5.0-update1 (including) 1.5.0-update1 (including)
Jdk Sun 1.5.0-update10 (including) 1.5.0-update10 (including)
Jdk Sun 1.5.0-update11 (including) 1.5.0-update11 (including)
Jdk Sun 1.5.0-update11_b03 (including) 1.5.0-update11_b03 (including)
Jdk Sun 1.5.0-update12 (including) 1.5.0-update12 (including)
Jdk Sun 1.5.0-update13 (including) 1.5.0-update13 (including)
Jdk Sun 1.5.0-update14 (including) 1.5.0-update14 (including)
Jdk Sun 1.5.0-update15 (including) 1.5.0-update15 (including)
Jdk Sun 1.5.0-update16 (including) 1.5.0-update16 (including)
Jdk Sun 1.5.0-update2 (including) 1.5.0-update2 (including)
Jdk Sun 1.6.0 (including) 1.6.0 (including)
Jdk Sun 1.6.0-update_10 (including) 1.6.0-update_10 (including)
Jdk Sun 1.6.0-update_3 (including) 1.6.0-update_3 (including)
Jdk Sun 1.6.0-update_4 (including) 1.6.0-update_4 (including)
Jdk Sun 1.6.0-update_5 (including) 1.6.0-update_5 (including)
Jdk Sun 1.6.0-update_6 (including) 1.6.0-update_6 (including)
Jdk Sun 1.6.0-update_7 (including) 1.6.0-update_7 (including)

References