Integer overflow in the unpack200 utility in Sun Java Runtime Environment (JRE) in JDK and JRE 6 before Update 15, and JDK and JRE 5.0 before Update 20, allows context-dependent attackers to gain privileges via unspecified length fields in the header of a Pack200-compressed JAR file, which leads to a heap-based buffer overflow during decompression.
2009-08-05T19:30:01.280
2025-04-09T00:30:58.490
Deferred
CVSSv2: 10.0 (HIGH)
AV:N/AC:L/Au:N/C:C/I:C/A:C
10.0
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | sun | jdk | ≤ 6 | Yes |
Application | sun | jdk | 5.0 | Yes |
Application | sun | jdk | 5.0 | Yes |
Application | sun | jdk | 5.0 | Yes |
Application | sun | jdk | 5.0 | Yes |
Application | sun | jdk | 5.0 | Yes |
Application | sun | jdk | 5.0 | Yes |
Application | sun | jdk | 5.0 | Yes |
Application | sun | jdk | 5.0 | Yes |
Application | sun | jdk | 5.0 | Yes |
Application | sun | jdk | 5.0 | Yes |
Application | sun | jdk | 5.0 | Yes |
Application | sun | jdk | 5.0 | Yes |
Application | sun | jdk | 5.0 | Yes |
Application | sun | jdk | 5.0 | Yes |
Application | sun | jdk | 5.0 | Yes |
Application | sun | jdk | 5.0 | Yes |
Application | sun | jdk | 5.0 | Yes |
Application | sun | jdk | 6 | Yes |
Application | sun | jdk | 6 | Yes |
Application | sun | jdk | 6 | Yes |
Application | sun | jdk | 6 | Yes |
Application | sun | jdk | 6 | Yes |
Application | sun | jdk | 6 | Yes |
Application | sun | jdk | 6 | Yes |
Application | sun | jdk | 6 | Yes |
Application | sun | jdk | 6 | Yes |
Application | sun | jdk | 6 | Yes |
Application | sun | jdk | 6 | Yes |
Application | sun | jdk | 6 | Yes |
Application | sun | jre | ≤ 6 | Yes |
Application | sun | jre | 5.0 | Yes |
Application | sun | jre | 5.0 | Yes |
Application | sun | jre | 5.0 | Yes |
Application | sun | jre | 5.0 | Yes |
Application | sun | jre | 5.0 | Yes |
Application | sun | jre | 5.0 | Yes |
Application | sun | jre | 5.0 | Yes |
Application | sun | jre | 5.0 | Yes |
Application | sun | jre | 5.0 | Yes |
Application | sun | jre | 5.0 | Yes |
Application | sun | jre | 5.0 | Yes |
Application | sun | jre | 5.0 | Yes |
Application | sun | jre | 5.0 | Yes |
Application | sun | jre | 5.0 | Yes |
Application | sun | jre | 5.0 | Yes |
Application | sun | jre | 5.0 | Yes |
Application | sun | jre | 5.0 | Yes |
Application | sun | jre | 5.0 | Yes |
Application | sun | jre | 6 | Yes |
Application | sun | jre | 6 | Yes |
Application | sun | jre | 6 | Yes |
Application | sun | jre | 6 | Yes |
Application | sun | jre | 6 | Yes |
Application | sun | jre | 6 | Yes |
Application | sun | jre | 6 | Yes |
Application | sun | jre | 6 | Yes |
Application | sun | jre | 6 | Yes |
Application | sun | jre | 6 | Yes |
Application | sun | jre | 6 | Yes |
Application | sun | jre | 6 | Yes |