Vulnerability Details CVE-2009-2205
Stack-based buffer overflow in the Java Web Start command launcher in Java for Mac OS X 10.5 before Update 5 allows attackers to execute arbitrary code or cause a denial of service (application crash) via unspecified vectors.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.008
EPSS Ranking 73.7%
CVSS Severity
CVSS v2 Score 6.8
Products affected by CVE-2009-2205
-
cpe:2.3:a:apple:java_1.4:*
-
cpe:2.3:a:apple:java_1.4:2
-
cpe:2.3:a:apple:java_1.5:*
-
cpe:2.3:a:apple:java_1.6:*
-
cpe:2.3:a:apple:java_1.6:0
-
cpe:2.3:o:apple:mac_os_x:10.5
-
cpe:2.3:o:apple:mac_os_x:10.5.0
-
cpe:2.3:o:apple:mac_os_x:10.5.1
-
cpe:2.3:o:apple:mac_os_x:10.5.2
-
cpe:2.3:o:apple:mac_os_x:10.5.3
-
cpe:2.3:o:apple:mac_os_x:10.5.4
-
cpe:2.3:o:apple:mac_os_x:10.5.5
-
cpe:2.3:o:apple:mac_os_x:10.5.6
-
cpe:2.3:o:apple:mac_os_x:10.5.7
-
cpe:2.3:o:apple:mac_os_x_server:10.5
-
cpe:2.3:o:apple:mac_os_x_server:10.5.0
-
cpe:2.3:o:apple:mac_os_x_server:10.5.1
-
cpe:2.3:o:apple:mac_os_x_server:10.5.2
-
cpe:2.3:o:apple:mac_os_x_server:10.5.3
-
cpe:2.3:o:apple:mac_os_x_server:10.5.4
-
cpe:2.3:o:apple:mac_os_x_server:10.5.5
-
cpe:2.3:o:apple:mac_os_x_server:10.5.6
-
cpe:2.3:o:apple:mac_os_x_server:10.5.7