CVE-2008-5344

Aliases:CGA-2c8h-4gm2-4q7qCGA-2x67-3j6c-9qxrCGA-3mr4-858q-chc3CGA-3w94-v97h-898jCGA-44mj-xm7r-w9xrCGA-499p-v23x-c84hCGA-54v3-xmmw-g8rhCGA-56rf-gw6r-66f7CGA-5ccw-qxpf-663qCGA-5v3r-7c96-6vgpCGA-5w7p-gpm4-m2cpCGA-6gr6-qrj8-wcvjCGA-6j6h-3gmf-grqpCGA-6j93-w9jp-2xwwCGA-6mvw-26ww-968rCGA-6qw5-8mh2-246fCGA-7345-pq64-f82vCGA-73w5-43pg-3583CGA-7h7m-7pc6-j3rmCGA-7mxr-pv4m-pjg9CGA-82cv-rxhv-3mqmCGA-83ph-q5px-c59hCGA-88w7-hq7x-3xgpCGA-8cw7-4c86-26xqCGA-8fqx-vf2x-wmwfCGA-8jpm-vqx8-x6hwCGA-8rw7-69hq-pg8mCGA-973c-px8c-2fvhCGA-9v98-hwvp-qmmvCGA-c357-qcmw-j5hpCGA-cmgg-w45g-p97rCGA-cv5w-m9qf-hmjcCGA-fcw8-33rx-2j76CGA-ffv5-mhvx-mv64CGA-g433-g78g-4996CGA-gcmf-ghpx-3g62CGA-ggfh-54f4-p56xCGA-gjpr-6q66-74cvCGA-gp6g-95v2-pv7gCGA-gw4p-vv4p-rj8cCGA-gwvg-m957-8rmcCGA-gxr9-p442-g9pwCGA-hc9h-8223-x44jCGA-hmxf-v4x6-r8w4CGA-m45c-f2wx-5gj9CGA-p2fx-fx7g-r3g9CGA-p6cj-jgxg-4w3hCGA-pffr-9mpf-qv62CGA-pwrh-h9v2-9pvwCGA-q525-9vxh-gwv8CGA-q87g-m22j-687mCGA-qfwh-g6p8-rjv7CGA-qgxf-52q5-5qwrCGA-qj4w-q52c-hf3rCGA-r244-jqv3-wx3qCGA-r6qx-9mr8-hmjmCGA-r6v7-m7c2-w2w4CGA-r84x-5ff5-cc6jCGA-rq54-jvq3-q5hhCGA-rv9p-6qrh-3gqpCGA-v732-xcq8-8j2rCGA-v7wx-r6gc-6c84CGA-vc3q-fv2q-q39fCGA-vj79-fq99-xx93CGA-vm9g-rrhr-wfj6CGA-vp24-mr77-mjgxCGA-w439-hvj2-9323CGA-wjfc-p4p6-xmx5CGA-wp6j-pffr-89cqCGA-wrwh-5r63-q8xcCGA-x2c8-r7xh-8cq3CGA-x553-v39v-6vp4CGA-x693-jg96-85q7CGA-x6mq-rcm5-cgg2CGA-x96q-94c2-2j2cCGA-xcwv-mgvg-8mj2CGA-xgf4-3662-v3pxCGA-xjcg-24m7-555h
Advisory lineage Upstream: 0 Downstream: 5
Modified
Published: 05 Dec 2008, 11:00
Last modified:07 Aug 2024, 10:49

Vulnerability Summary

Overall Risk (default)
medium
31/100
CVSS Score
7.5 HIGH
v2.0 (nvd)
EPSS Score
3.43% LOW
3% probability +1.95%
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

05 Dec 2008, 11:00
Published
Vulnerability first disclosed
07 Aug 2024, 10:49
Last Modified
Vulnerability information updated

Description

Unspecified vulnerability in Java Web Start (JWS) and Java Plug-in with Sun JDK and JRE 6 Update 10 and earlier; JDK and JRE 5.0 Update 16 and earlier; and SDK and JRE 1.4.2_18 and earlier allows untrusted applets to read arbitrary files and make unauthorized network connections via unknown vectors related to applet classloading, aka 6716217.

CVSS Metrics

  • v2.0HIGHScore: 7.5AV:N/AC:L/Au:N/C:P/I:P/A:P

EPSS Trends

Current EPSS score: 3.43% Percentile: 88%

Affected Systems

  • chainguardopenjdk-11-openj9

    < 0.59.0-r2

  • chainguardopenjdk-11-openj9-dbg

    < 0.59.0-r2

  • chainguardopenjdk-11-openj9-default-jdk

    < 0.59.0-r2

  • chainguardopenjdk-11-openj9-default-jvm

    < 0.59.0-r2

  • chainguardopenjdk-11-openj9-doc

    < 0.59.0-r2

  • chainguardopenjdk-11-openj9-jmods

    < 0.59.0-r2

  • chainguardopenjdk-11-openj9-jre

    < 0.59.0-r2

  • chainguardopenjdk-17-openj9

    < 0.59.0-r1

  • chainguardopenjdk-17-openj9-dbg

    < 0.59.0-r1

  • chainguardopenjdk-17-openj9-default-jdk

    < 0.59.0-r1

  • chainguardopenjdk-17-openj9-default-jvm

    < 0.59.0-r1

  • chainguardopenjdk-17-openj9-doc

    < 0.59.0-r1

  • chainguardopenjdk-17-openj9-jmods

    < 0.59.0-r1

  • chainguardopenjdk-17-openj9-jre

    < 0.59.0-r1

  • chainguardopenjdk-21-openj9

    < 0.59.0-r1

  • chainguardopenjdk-21-openj9-dbg

    < 0.59.0-r1

  • chainguardopenjdk-21-openj9-default-jdk

    < 0.59.0-r1

  • chainguardopenjdk-21-openj9-default-jvm

    < 0.59.0-r1

  • chainguardopenjdk-21-openj9-doc

    < 0.59.0-r1

  • chainguardopenjdk-21-openj9-jmods

    < 0.59.0-r1

  • chainguardopenjdk-21-openj9-jre

    < 0.59.0-r1

  • chainguardopenjdk-25-openj9

    < 0.59.0-r1

  • chainguardopenjdk-25-openj9-dbg

    < 0.59.0-r1

  • chainguardopenjdk-25-openj9-default-jdk

    < 0.59.0-r1

  • chainguardopenjdk-25-openj9-default-jvm

    < 0.59.0-r1

  • chainguardopenjdk-25-openj9-jmods

    < 0.59.0-r1

  • chainguardopenjdk-25-openj9-jre

    < 0.59.0-r1

  • chainguardopenjdk-26-openj9

    < 0.59.0-r1

  • chainguardopenjdk-26-openj9-dbg

    < 0.59.0-r1

  • chainguardopenjdk-26-openj9-default-jdk

    < 0.59.0-r1

  • chainguardopenjdk-26-openj9-default-jvm

    < 0.59.0-r1

  • chainguardopenjdk-26-openj9-jmods

    < 0.59.0-r1

  • chainguardopenjdk-26-openj9-jre

    < 0.59.0-r1

  • chainguardopenjdk-8-openj9

    < 0.59.0-r1

  • chainguardopenjdk-8-openj9-dbg

    < 0.59.0-r1

  • chainguardopenjdk-8-openj9-default-jdk

    < 0.59.0-r1

  • chainguardopenjdk-8-openj9-default-jvm

    < 0.59.0-r1

  • chainguardopenjdk-8-openj9-doc

    < 0.59.0-r1

  • chainguardopenjdk-8-openj9-jre

    < 0.59.0-r1

  • sunjdk

    ≤ 5.0 | ≤ 6 | 5.0:update_1 | 5.0:update_10 | 5.0:update_11 | 5.0:update_12 | 5.0:update_13 | 5.0:update_14 | 5.0:update_15 | 5.0:update_2 | 5.0:update_3 | 5.0:update_4 | 5.0:update_5 | 5.0:update_6 | 5.0:update_7 | 5.0:update_8 | 5.0:update_9 | 6 | 6:update_1 | 6:update_2 | 6:update_3 | 6:update_4 | 6:update_5 | 6:update_6 | 6:update_7 | 6:update_8 | 6:update_9

  • sunjre

    ≤ 1.4.2_18 | ≤ 5.0 | ≤ 6 | 1.4.2_1 | 1.4.2_2 | 1.4.2_3 | 1.4.2_4 | 1.4.2_5 | 1.4.2_6 | 1.4.2_7 | 1.4.2_8 | 1.4.2_9 | 1.4.2_10 | 1.4.2_11 | 1.4.2_12 | 1.4.2_13 | 1.4.2_14 | 1.4.2_15 | 1.4.2_16 | 1.4.2_17 | 5.0 | 5.0:update_1 | 5.0:update_10 | 5.0:update_11 | 5.0:update_12 | 5.0:update_13 | 5.0:update_14 | 5.0:update_15 | 5.0:update_2 | 5.0:update_3 | 5.0:update_4 | 5.0:update_5 | 5.0:update_6 | 5.0:update_7 | 5.0:update_8 | 5.0:update_9 | 6 | 6:update_1 | 6:update_2 | 6:update_3 | 6:update_4 | 6:update_5 | 6:update_6 | 6:update_7 | 6:update_8 | 6:update_9

  • sunsdk

    ≤ 1.4.2_18 | 1.4.2_1 | 1.4.2_2 | 1.4.2_3 | 1.4.2_4 | 1.4.2_5 | 1.4.2_6 | 1.4.2_7 | 1.4.2_8 | 1.4.2_9 | 1.4.2_10 | 1.4.2_11 | 1.4.2_12 | 1.4.2_13 | 1.4.2_14 | 1.4.2_15 | 1.4.2_16 | 1.4.2_17

References (32)