CVE Vulnerabilities

CVE-2009-2671

Published: Aug 05, 2009 | Modified: Oct 10, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
4.3 IMPORTANT
AV:N/AC:M/Au:N/C:P/I:N/A:N
RedHat/V3
Ubuntu
LOW

The SOCKS proxy implementation in Sun Java Runtime Environment (JRE) in JDK and JRE 6 before Update 15, and JDK and JRE 5.0 before Update 20, allows remote attackers to discover the username of the account that invoked an untrusted (1) applet or (2) Java Web Start application via unspecified vectors.

Affected Software

Name Vendor Start Version End Version
Jdk Sun * 6 (including)
Jdk Sun 5.0-update_1 (including) 5.0-update_1 (including)
Jdk Sun 5.0-update_10 (including) 5.0-update_10 (including)
Jdk Sun 5.0-update_11 (including) 5.0-update_11 (including)
Jdk Sun 5.0-update_12 (including) 5.0-update_12 (including)
Jdk Sun 5.0-update_13 (including) 5.0-update_13 (including)
Jdk Sun 5.0-update_14 (including) 5.0-update_14 (including)
Jdk Sun 5.0-update_15 (including) 5.0-update_15 (including)
Jdk Sun 5.0-update_16 (including) 5.0-update_16 (including)
Jdk Sun 5.0-update_17 (including) 5.0-update_17 (including)
Jdk Sun 5.0-update_2 (including) 5.0-update_2 (including)
Jdk Sun 5.0-update_3 (including) 5.0-update_3 (including)
Jdk Sun 5.0-update_4 (including) 5.0-update_4 (including)
Jdk Sun 5.0-update_5 (including) 5.0-update_5 (including)
Jdk Sun 5.0-update_6 (including) 5.0-update_6 (including)
Jdk Sun 5.0-update_7 (including) 5.0-update_7 (including)
Jdk Sun 5.0-update_8 (including) 5.0-update_8 (including)
Jdk Sun 5.0-update_9 (including) 5.0-update_9 (including)
Jdk Sun 6-update_1 (including) 6-update_1 (including)
Jdk Sun 6-update_10 (including) 6-update_10 (including)
Jdk Sun 6-update_11 (including) 6-update_11 (including)
Jdk Sun 6-update_12 (including) 6-update_12 (including)
Jdk Sun 6-update_2 (including) 6-update_2 (including)
Jdk Sun 6-update_3 (including) 6-update_3 (including)
Jdk Sun 6-update_4 (including) 6-update_4 (including)
Jdk Sun 6-update_5 (including) 6-update_5 (including)
Jdk Sun 6-update_6 (including) 6-update_6 (including)
Jdk Sun 6-update_7 (including) 6-update_7 (including)
Jdk Sun 6-update_8 (including) 6-update_8 (including)
Jdk Sun 6-update_9 (including) 6-update_9 (including)
Jre Sun * 6 (including)
Jre Sun 5.0-update_1 (including) 5.0-update_1 (including)
Jre Sun 5.0-update_10 (including) 5.0-update_10 (including)
Jre Sun 5.0-update_11 (including) 5.0-update_11 (including)
Jre Sun 5.0-update_12 (including) 5.0-update_12 (including)
Jre Sun 5.0-update_13 (including) 5.0-update_13 (including)
Jre Sun 5.0-update_14 (including) 5.0-update_14 (including)
Jre Sun 5.0-update_15 (including) 5.0-update_15 (including)
Jre Sun 5.0-update_16 (including) 5.0-update_16 (including)
Jre Sun 5.0-update_17 (including) 5.0-update_17 (including)
Jre Sun 5.0-update_19 (including) 5.0-update_19 (including)
Jre Sun 5.0-update_2 (including) 5.0-update_2 (including)
Jre Sun 5.0-update_3 (including) 5.0-update_3 (including)
Jre Sun 5.0-update_4 (including) 5.0-update_4 (including)
Jre Sun 5.0-update_5 (including) 5.0-update_5 (including)
Jre Sun 5.0-update_6 (including) 5.0-update_6 (including)
Jre Sun 5.0-update_7 (including) 5.0-update_7 (including)
Jre Sun 5.0-update_8 (including) 5.0-update_8 (including)
Jre Sun 5.0-update_9 (including) 5.0-update_9 (including)
Jre Sun 6-update_1 (including) 6-update_1 (including)
Jre Sun 6-update_10 (including) 6-update_10 (including)
Jre Sun 6-update_11 (including) 6-update_11 (including)
Jre Sun 6-update_12 (including) 6-update_12 (including)
Jre Sun 6-update_2 (including) 6-update_2 (including)
Jre Sun 6-update_3 (including) 6-update_3 (including)
Jre Sun 6-update_4 (including) 6-update_4 (including)
Jre Sun 6-update_5 (including) 6-update_5 (including)
Jre Sun 6-update_6 (including) 6-update_6 (including)
Jre Sun 6-update_7 (including) 6-update_7 (including)
Jre Sun 6-update_8 (including) 6-update_8 (including)
Jre Sun 6-update_9 (including) 6-update_9 (including)
Extras for RHEL 4 RedHat java-1.5.0-sun-0:1.5.0.20-1jpp.1.el4 *
Extras for RHEL 4 RedHat java-1.6.0-sun-1:1.6.0.15-1jpp.1.el4 *
Extras for RHEL 4 RedHat java-1.5.0-ibm-1:1.5.0.10-1jpp.4.el4 *
Extras for RHEL 4 RedHat java-1.6.0-ibm-1:1.6.0.6-1jpp.3.el4 *
Red Hat Enterprise Linux 5 RedHat java-1.6.0-openjdk-1:1.6.0.0-1.2.b09.el5 *
Red Hat Network Satellite Server v 5.1 RedHat java-1.5.0-sun-0:1.5.0.22-1jpp.1.el4 *
Red Hat Network Satellite Server v 5.3 RedHat java-1.6.0-ibm-1:1.6.0.7-1jpp.3.el4 *
Supplementary for Red Hat Enterprise Linux 5 RedHat java-1.5.0-sun-0:1.5.0.20-1jpp.1.el5 *
Supplementary for Red Hat Enterprise Linux 5 RedHat java-1.6.0-sun-1:1.6.0.15-1jpp.1.el5 *
Supplementary for Red Hat Enterprise Linux 5 RedHat java-1.5.0-ibm-1:1.5.0.10-1jpp.4.el5 *
Supplementary for Red Hat Enterprise Linux 5 RedHat java-1.6.0-ibm-1:1.6.0.6-1jpp.3.el5 *
Openjdk-6 Ubuntu hardy *
Openjdk-6 Ubuntu intrepid *
Openjdk-6 Ubuntu jaunty *
Openjdk-6 Ubuntu upstream *
Sun-java5 Ubuntu dapper *
Sun-java5 Ubuntu gutsy *
Sun-java5 Ubuntu intrepid *
Sun-java5 Ubuntu jaunty *
Sun-java5 Ubuntu upstream *
Sun-java6 Ubuntu hardy *
Sun-java6 Ubuntu intrepid *
Sun-java6 Ubuntu jaunty *
Sun-java6 Ubuntu karmic *
Sun-java6 Ubuntu lucid *
Sun-java6 Ubuntu upstream *

References