Vulnerability Details CVE-2004-2540
readObject in (1) Java Runtime Environment (JRE) and (2) Software Development Kit (SDK) 1.4.0 through 1.4.2_05 allows remote attackers to cause a denial of service (JVM unresponsive) via crafted serialized data.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.009
EPSS Ranking 75.0%
CVSS Severity
CVSS v2 Score 5.0
Products affected by CVE-2004-2540
-
-
cpe:2.3:a:sun:jdk:1.4.0_01
-
cpe:2.3:a:sun:jdk:1.4.0_02
-
cpe:2.3:a:sun:jdk:1.4.0_03
-
cpe:2.3:a:sun:jdk:1.4.0_4
-
-
cpe:2.3:a:sun:jdk:1.4.1_01
-
cpe:2.3:a:sun:jdk:1.4.1_02
-
cpe:2.3:a:sun:jdk:1.4.1_03
-
-
cpe:2.3:a:sun:jdk:1.4.2_01
-
cpe:2.3:a:sun:jdk:1.4.2_02
-
cpe:2.3:a:sun:jdk:1.4.2_03
-
cpe:2.3:a:sun:jdk:1.4.2_04
-
cpe:2.3:a:sun:jdk:1.4.2_05
-
-
cpe:2.3:a:sun:jre:1.4.0_01
-
cpe:2.3:a:sun:jre:1.4.0_02
-
cpe:2.3:a:sun:jre:1.4.0_03
-
cpe:2.3:a:sun:jre:1.4.0_04
-
-
cpe:2.3:a:sun:jre:1.4.1_01
-
cpe:2.3:a:sun:jre:1.4.1_02
-
cpe:2.3:a:sun:jre:1.4.1_07
-