Sun Java Media Framework (JMF) 2.1.1 through 2.1.1c allows unsigned applets to cause a denial of service (JVM crash) and read or write unauthorized memory locations via the ReadEnv class, as demonstrated by reading environment variables using modified .data and .size fields.
2009-06-01T22:30:00.187
2025-04-09T00:30:58.490
Deferred
CVSSv2: 9.3 (HIGH)
AV:N/AC:M/Au:N/C:C/I:C/A:C
8.6
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | sun | jmf | 2.1.1 | Yes |
Application | sun | jmf | 2.1.1a | Yes |
Application | sun | jmf | 2.1.1b | Yes |
Application | sun | jmf | 2.1.1c | Yes |