CVE-2009-2676 at MITRE
Description
Unspecified vulnerability in JNLPAppletlauncher in Sun Java SE, and SE for Business, in JDK and JRE 6 Update 14 and earlier and JDK and JRE 5.0 Update 19 and earlier; and Java SE for Business in SDK and JRE 1.4.2_21 and earlier; allows remote attackers to create or modify arbitrary files via vectors involving an untrusted Java applet that accesses an old version of JNLPAppletLauncher.
Novell Bugzilla entry:
528268,
548655
SUSE Security Advisories:
List of released packages
| Product(s) | Fixed package version(s) | References |
| SLE 11 | java-1_6_0-ibm >= 1.6.0_sr6-1.1.1 java-1_6_0-ibm-devel >= 1.6.0_sr6-1.1.1 java-1_6_0-ibm-fonts >= 1.6.0_sr6-1.1.1
| sle11. x86 sle11. x86-64 sle11. x86-64 sle11. ppc sle11. ppc sle11. x86 sle11. s390x sle11. s390x SAT Patch Nr: 1497 |
| SLE 11 | java-1_6_0-ibm-devel >= 1.6.0_sr6-1.1.1
| sle11. x86 sle11. x86-64 sle11. x86-64 sle11. ppc sle11. ppc sle11. x86 sle11. s390x sle11. s390x SAT Patch Nr: 1497 |
| SLES 11 | java-1_6_0-ibm >= 1.6.0_sr6-1.1.1 java-1_6_0-ibm-alsa >= 1.6.0_sr6-1.1.1 java-1_6_0-ibm-fonts >= 1.6.0_sr6-1.1.1 java-1_6_0-ibm-jdbc >= 1.6.0_sr6-1.1.1 java-1_6_0-ibm-plugin >= 1.6.0_sr6-1.1.1
| sle11. x86 sle11. x86-64 sle11. x86-64 sle11. ppc sle11. ppc sle11. x86 sle11. s390x sle11. s390x SAT Patch Nr: 1497 |
| SLES 11 | java-1_6_0-ibm >= 1.6.0_sr6-1.1.1 java-1_6_0-ibm-fonts >= 1.6.0_sr6-1.1.1 java-1_6_0-ibm-jdbc >= 1.6.0_sr6-1.1.1
| sle11. x86 sle11. x86-64 sle11. x86-64 sle11. ppc sle11. ppc sle11. x86 sle11. s390x sle11. s390x SAT Patch Nr: 1497 |
| openSUSE 10.3 | java-1_6_0-sun >= 1.6.0.u15-0.1 java-1_6_0-sun-alsa >= 1.6.0.u15-0.1 java-1_6_0-sun-debuginfo >= 1.6.0.u15-0.1 java-1_6_0-sun-demo >= 1.6.0.u15-0.1 java-1_6_0-sun-devel >= 1.6.0.u15-0.1 java-1_6_0-sun-jdbc >= 1.6.0.u15-0.1 java-1_6_0-sun-plugin >= 1.6.0.u15-0.1 java-1_6_0-sun-src >= 1.6.0.u15-0.1
| ZYPP Patch Nr: 6395 SAT Patch Nr: 1161 |
| openSUSE 11.0 | java-1_6_0-sun >= 1.6.0.u15-0.1 java-1_6_0-sun-alsa >= 1.6.0.u15-0.1 java-1_6_0-sun-demo >= 1.6.0.u15-0.1 java-1_6_0-sun-devel >= 1.6.0.u15-0.1 java-1_6_0-sun-jdbc >= 1.6.0.u15-0.1 java-1_6_0-sun-plugin >= 1.6.0.u15-0.1 java-1_6_0-sun-src >= 1.6.0.u15-0.1
| ZYPP Patch Nr: 6395 SAT Patch Nr: 1161 |
| openSUSE 11.1 | java-1_6_0-sun >= 1.6.0.u15-0.1.1 java-1_6_0-sun-alsa >= 1.6.0.u15-0.1.1 java-1_6_0-sun-devel >= 1.6.0.u15-0.1.1 java-1_6_0-sun-jdbc >= 1.6.0.u15-0.1.1 java-1_6_0-sun-plugin >= 1.6.0.u15-0.1.1 java-1_6_0-sun-src >= 1.6.0.u15-0.1.1
| ZYPP Patch Nr: 6395 SAT Patch Nr: 1161 |
| SLES 11 DEBUGINFO | java-1_6_0-sun-debuginfo >= 1.6.0.u15-0.1.1
| sle11-debuginfo. x86 sle11-debuginfo. x86-64 sle11-debuginfo. x86-64 sle11-debuginfo. x86 SAT Patch Nr: 1163 |
| SLED 11 | java-1_6_0-sun >= 1.6.0.u15-0.1.1 java-1_6_0-sun-alsa >= 1.6.0.u15-0.1.1 java-1_6_0-sun-demo >= 1.6.0.u15-0.1.1 java-1_6_0-sun-jdbc >= 1.6.0.u15-0.1.1 java-1_6_0-sun-plugin >= 1.6.0.u15-0.1.1 java-1_6_0-sun-src >= 1.6.0.u15-0.1.1
| sle11-debuginfo. x86 sle11-debuginfo. x86-64 sle11-debuginfo. x86-64 sle11-debuginfo. x86 SAT Patch Nr: 1163 |
openSUSE 10.3 openSUSE 11.0 | java-1_5_0-sun >= 1.5.0_update20-0.1 java-1_5_0-sun-alsa >= 1.5.0_update20-0.1 java-1_5_0-sun-demo >= 1.5.0_update20-0.1 java-1_5_0-sun-devel >= 1.5.0_update20-0.1 java-1_5_0-sun-jdbc >= 1.5.0_update20-0.1 java-1_5_0-sun-plugin >= 1.5.0_update20-0.1 java-1_5_0-sun-src >= 1.5.0_update20-0.1
| ZYPP Patch Nr: 6396 SAT Patch Nr: 1162 |
| openSUSE 11.1 | java-1_5_0-sun >= 1.5.0_update20-0.1.1 java-1_5_0-sun-alsa >= 1.5.0_update20-0.1.1 java-1_5_0-sun-devel >= 1.5.0_update20-0.1.1 java-1_5_0-sun-jdbc >= 1.5.0_update20-0.1.1 java-1_5_0-sun-plugin >= 1.5.0_update20-0.1.1 java-1_5_0-sun-src >= 1.5.0_update20-0.1.1
| ZYPP Patch Nr: 6396 SAT Patch Nr: 1162 |