Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2009-2674

Integer overflow in javaws.exe in Sun Java Web Start in Sun Java Runtime Environment (JRE) in JDK and JRE 6 before Update 15 allows context-dependent attackers to execute arbitrary code via a crafted JPEG image that is not properly handled during display to a splash screen, which triggers a heap-based buffer overflow.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.04
EPSS Ranking 87.9%
CVSS Severity
CVSS v2 Score 7.5
References
Products affected by CVE-2009-2674
  • Sun » Jdk » Version: 1.6.0
    cpe:2.3:a:sun:jdk:1.6.0
  • Sun » Jdk » Version: 6
    cpe:2.3:a:sun:jdk:6
  • Sun » Jre » Version: 6
    cpe:2.3:a:sun:jre:6


Contact Us

Shodan ® - All rights reserved