CVE-2008-5339

Aliases:CGA-2692-jcfv-qch4CGA-2gf5-j47v-vcjvCGA-37g8-xmgq-m8p4CGA-37j4-prcp-p42gCGA-39j5-93cc-j5hcCGA-3jvh-f8x4-mcgmCGA-3v5r-mfgh-4x86CGA-459p-3ff4-qhwqCGA-46f6-2797-8279CGA-564h-fcv2-mq8xCGA-59qr-33pc-4x5hCGA-5pqh-gc65-6mf2CGA-5vxc-vh84-9396CGA-6r4r-x5wc-2q6rCGA-6rxq-f8fx-3c7fCGA-6w6f-738w-f55rCGA-6wrm-mxp7-58rpCGA-733c-544c-v6wmCGA-77h4-j79r-5gqxCGA-7c3f-h38w-356rCGA-7f69-c96q-36cxCGA-7j32-r4ww-6j44CGA-872g-frw6-25qgCGA-8cjr-wvpr-v8qrCGA-928q-cjvc-wm26CGA-956v-j949-v2r6CGA-9gm5-9rcf-qc7cCGA-9vc3-32cv-vvx7CGA-c5xh-m3p6-jjcwCGA-c6hq-xpcp-rv25CGA-chfq-5498-c94hCGA-cq3v-gw9v-wjjxCGA-f586-vjpj-xh69CGA-ff8g-jm65-5q5gCGA-g8fv-qj2v-49r4CGA-gc42-gm6g-2qq7CGA-gg44-fp83-55jqCGA-ggwr-wr4w-v4phCGA-gr66-xgqj-mxqcCGA-gvgx-h7mr-jx2vCGA-h4f7-46rc-f2cqCGA-h5g9-jm33-7pm8CGA-h8wm-r2qx-8m62CGA-hh7j-2w5x-58jmCGA-j5f7-qh6x-wx9pCGA-jj2f-jfpc-54c7CGA-jp55-pc3f-mw8vCGA-jvg4-mcfj-hhwrCGA-m446-85g2-w578CGA-m47r-x8h9-g7vxCGA-mcjf-56hv-98j9CGA-mjhf-2hw3-6hvpCGA-pq7m-wf37-2g92CGA-pr5r-cj2v-c3q9CGA-q259-cr9f-j73xCGA-q2hx-gr2j-q6fcCGA-q2vh-5228-53x7CGA-qfrp-w5qf-2v3pCGA-qmxx-29q5-3x66CGA-qp85-q8cp-9mhrCGA-r8wg-vvxw-hfm3CGA-rcg4-vq6f-4wjhCGA-rf59-fjx9-v2mcCGA-rfr4-5w4c-8x4fCGA-rmwp-rv48-4vx6CGA-rrp7-xw3h-jc4gCGA-vp5j-4xpf-chhpCGA-w283-gwjf-85v5CGA-w3fm-56wr-3pwcCGA-w63h-xr57-m8vhCGA-wfrp-5pj3-7g4qCGA-wghc-pfmp-vph2CGA-wj6f-4c97-fw98CGA-xfv6-7663-pqrwCGA-xgq4-p9fw-p34gCGA-xgx9-3hm7-4fw4CGA-xqr7-gxvq-h2mgCGA-xwm2-qw7f-wcj6
Advisory lineage Upstream: 0 Downstream: 5
Modified
Published: 05 Dec 2008, 11:00
Last modified:07 Aug 2024, 10:49

Vulnerability Summary

Overall Risk (default)
low
21/100
CVSS Score
5 MEDIUM
v2.0 (nvd)
EPSS Score
3.45% LOW
3% probability +2.12%
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

05 Dec 2008, 11:00
Published
Vulnerability first disclosed
07 Aug 2024, 10:49
Last Modified
Vulnerability information updated

Description

Unspecified vulnerability in Java Web Start (JWS) and Java Plug-in with Sun JDK and JRE 6 Update 10 and earlier; JDK and JRE 5.0 Update 16 and earlier; and SDK and JRE 1.4.2_18 and earlier allows untrusted JWS applications to perform network connections to unauthorized hosts via unknown vectors, aka CR 6727079.

CVSS Metrics

  • v2.0MEDIUMScore: 5AV:N/AC:L/Au:N/C:N/I:N/A:P

EPSS Trends

Current EPSS score: 3.45% Percentile: 88%

Affected Systems

  • chainguardopenjdk-11-openj9

    < 0.59.0-r2

  • chainguardopenjdk-11-openj9-dbg

    < 0.59.0-r2

  • chainguardopenjdk-11-openj9-default-jdk

    < 0.59.0-r2

  • chainguardopenjdk-11-openj9-default-jvm

    < 0.59.0-r2

  • chainguardopenjdk-11-openj9-doc

    < 0.59.0-r2

  • chainguardopenjdk-11-openj9-jmods

    < 0.59.0-r2

  • chainguardopenjdk-11-openj9-jre

    < 0.59.0-r2

  • chainguardopenjdk-17-openj9

    < 0.59.0-r1

  • chainguardopenjdk-17-openj9-dbg

    < 0.59.0-r1

  • chainguardopenjdk-17-openj9-default-jdk

    < 0.59.0-r1

  • chainguardopenjdk-17-openj9-default-jvm

    < 0.59.0-r1

  • chainguardopenjdk-17-openj9-doc

    < 0.59.0-r1

  • chainguardopenjdk-17-openj9-jmods

    < 0.59.0-r1

  • chainguardopenjdk-17-openj9-jre

    < 0.59.0-r1

  • chainguardopenjdk-21-openj9

    < 0.59.0-r1

  • chainguardopenjdk-21-openj9-dbg

    < 0.59.0-r1

  • chainguardopenjdk-21-openj9-default-jdk

    < 0.59.0-r1

  • chainguardopenjdk-21-openj9-default-jvm

    < 0.59.0-r1

  • chainguardopenjdk-21-openj9-doc

    < 0.59.0-r1

  • chainguardopenjdk-21-openj9-jmods

    < 0.59.0-r1

  • chainguardopenjdk-21-openj9-jre

    < 0.59.0-r1

  • chainguardopenjdk-25-openj9

    < 0.59.0-r1

  • chainguardopenjdk-25-openj9-dbg

    < 0.59.0-r1

  • chainguardopenjdk-25-openj9-default-jdk

    < 0.59.0-r1

  • chainguardopenjdk-25-openj9-default-jvm

    < 0.59.0-r1

  • chainguardopenjdk-25-openj9-jmods

    < 0.59.0-r1

  • chainguardopenjdk-25-openj9-jre

    < 0.59.0-r1

  • chainguardopenjdk-26-openj9

    < 0.59.0-r1

  • chainguardopenjdk-26-openj9-dbg

    < 0.59.0-r1

  • chainguardopenjdk-26-openj9-default-jdk

    < 0.59.0-r1

  • chainguardopenjdk-26-openj9-default-jvm

    < 0.59.0-r1

  • chainguardopenjdk-26-openj9-jmods

    < 0.59.0-r1

  • chainguardopenjdk-26-openj9-jre

    < 0.59.0-r1

  • chainguardopenjdk-8-openj9

    < 0.59.0-r1

  • chainguardopenjdk-8-openj9-dbg

    < 0.59.0-r1

  • chainguardopenjdk-8-openj9-default-jdk

    < 0.59.0-r1

  • chainguardopenjdk-8-openj9-default-jvm

    < 0.59.0-r1

  • chainguardopenjdk-8-openj9-doc

    < 0.59.0-r1

  • chainguardopenjdk-8-openj9-jre

    < 0.59.0-r1

  • sunjdk

    ≤ 5.0 | ≤ 6 | 5.0:update_1 | 5.0:update_10 | 5.0:update_11 | 5.0:update_12 | 5.0:update_13 | 5.0:update_14 | 5.0:update_15 | 5.0:update_2 | 5.0:update_3 | 5.0:update_4 | 5.0:update_5 | 5.0:update_6 | 5.0:update_7 | 5.0:update_8 | 5.0:update_9 | 6 | 6:update_1 | 6:update_2 | 6:update_3 | 6:update_4 | 6:update_5 | 6:update_6 | 6:update_7 | 6:update_8 | 6:update_9

  • sunjre

    ≤ 1.4.2_18 | ≤ 5.0 | ≤ 6 | 1.4.2_1 | 1.4.2_2 | 1.4.2_3 | 1.4.2_4 | 1.4.2_5 | 1.4.2_6 | 1.4.2_7 | 1.4.2_8 | 1.4.2_9 | 1.4.2_10 | 1.4.2_11 | 1.4.2_12 | 1.4.2_13 | 1.4.2_14 | 1.4.2_15 | 1.4.2_16 | 1.4.2_17 | 5.0 | 5.0:update_1 | 5.0:update_10 | 5.0:update_11 | 5.0:update_12 | 5.0:update_13 | 5.0:update_14 | 5.0:update_15 | 5.0:update_2 | 5.0:update_3 | 5.0:update_4 | 5.0:update_5 | 5.0:update_6 | 5.0:update_7 | 5.0:update_8 | 5.0:update_9 | 6 | 6:update_1 | 6:update_2 | 6:update_3 | 6:update_4 | 6:update_5 | 6:update_6 | 6:update_7 | 6:update_8 | 6:update_9

  • sunsdk

    ≤ 1.4.2_18 | 1.4.2_1 | 1.4.2_2 | 1.4.2_3 | 1.4.2_4 | 1.4.2_5 | 1.4.2_6 | 1.4.2_7 | 1.4.2_8 | 1.4.2_9 | 1.4.2_10 | 1.4.2_11 | 1.4.2_12 | 1.4.2_13 | 1.4.2_14 | 1.4.2_15 | 1.4.2_16 | 1.4.2_17

References (30)