CVE-2008-5350

Aliases:CGA-27q5-64m3-958gCGA-3882-mw2m-rmf9CGA-3gq3-wmwc-5q22CGA-4hpp-j482-p75xCGA-5376-5g72-jmm4CGA-5frv-3qmv-r565CGA-5vxf-42mp-f2rcCGA-66gx-vf3c-qrhqCGA-67c9-vrw7-g59cCGA-6f7m-x33r-94h5CGA-6ghh-75wg-fm3wCGA-6hjh-8j4f-r6m2CGA-73w6-c88p-7v92CGA-75gm-p74j-3mwjCGA-7cv3-54r8-7phvCGA-7whq-hj59-97wvCGA-83x8-jhcw-22qrCGA-8543-g4f8-2chvCGA-8gxg-9ccv-qjcjCGA-8whg-36rp-h5q6CGA-8x39-276m-q3c4CGA-9m48-2crr-wrvrCGA-9xc6-h7cj-cxprCGA-c9wv-3pr9-r37pCGA-cv3c-p8fh-jxh5CGA-cvgr-cjmq-5c3rCGA-f72h-7wj9-8h4xCGA-fg5x-h2pq-p3xhCGA-fjgx-cm6q-4vjjCGA-gh7h-fjf6-x6hmCGA-h22w-4mx3-h5rpCGA-h6jg-rxr7-8fhjCGA-h7hw-pjq7-4g8mCGA-h7qp-9w23-c876CGA-hj8x-5vvj-vr7vCGA-hxv7-8mx8-x39cCGA-j2wg-v348-g7hwCGA-j92q-8rgh-xjmjCGA-jcc6-mwwm-h3frCGA-jfxq-j9p9-8crcCGA-jr44-4mj3-5r2vCGA-m2ch-45qh-6c8xCGA-m93h-jrpr-w43wCGA-mcjf-fwx9-4x76CGA-mcm2-9pwm-3rp9CGA-mx26-xqvm-93wrCGA-p2gf-cch8-chv7CGA-p5x7-7q8p-xx9rCGA-pcfm-49pq-v98hCGA-pmf8-j6qx-ff6hCGA-pp34-w4f3-g84mCGA-pw4j-w7rg-w3p2CGA-px4x-93r9-cfcrCGA-q2wg-fqwj-9pwfCGA-q4q5-rfpg-qh77CGA-q68w-r4mp-h4cxCGA-qf46-x9fr-25vrCGA-qvxj-wvmc-c2pmCGA-r9qx-48cj-63p9CGA-rv48-26x9-jqfrCGA-v777-c9hm-fm52CGA-v7hg-jmmc-jjhgCGA-vf3h-qcg9-x3wgCGA-vg2p-pvm3-cc6xCGA-vmpw-66vw-c928CGA-w5cw-rgqj-j724CGA-w6fr-47vw-w7f8CGA-w9h4-pjp7-4v7hCGA-wh2q-f77m-6696CGA-wp7c-jc3v-p64cCGA-x32w-xfvm-q982CGA-x64r-3w9x-wwg5CGA-x678-f87x-q5hqCGA-x6cj-q8w8-7r29CGA-x7qq-cpqr-j388CGA-xq9f-hwvj-vfh6CGA-xqf4-8p9f-43h4CGA-xxmm-hvmm-q968
Modified
Published: 05 Dec 2008, 11:00
Last modified:07 Aug 2024, 10:49

Vulnerability Summary

Overall Risk (default)
low
21/100
CVSS Score
5 MEDIUM
v2.0 (nvd)
EPSS Score
3.01% LOW
3% probability +1.34%
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

05 Dec 2008, 11:00
Published
Vulnerability first disclosed
07 Aug 2024, 10:49
Last Modified
Vulnerability information updated

Description

Unspecified vulnerability in Java Runtime Environment (JRE) for Sun JDK and JRE 6 Update 10 and earlier; JDK and JRE 5.0 Update 16 and earlier; and SDK and JRE 1.4.2_18 and earlier allows untrusted applications and applets to list the contents of the operating user's directory via unknown vectors.

CVSS Metrics

  • v2.0MEDIUMScore: 5AV:N/AC:L/Au:N/C:P/I:N/A:N

EPSS Trends

Current EPSS score: 3.01% Percentile: 87%

Techniques & Countermeasures

  • CWE-200Exposure of Sensitive Information to an Unauthorized Actor

    The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.

Affected Systems

  • chainguardopenjdk-11-openj9

    < 0.59.0-r2

  • chainguardopenjdk-11-openj9-dbg

    < 0.59.0-r2

  • chainguardopenjdk-11-openj9-default-jdk

    < 0.59.0-r2

  • chainguardopenjdk-11-openj9-default-jvm

    < 0.59.0-r2

  • chainguardopenjdk-11-openj9-doc

    < 0.59.0-r2

  • chainguardopenjdk-11-openj9-jmods

    < 0.59.0-r2

  • chainguardopenjdk-11-openj9-jre

    < 0.59.0-r2

  • chainguardopenjdk-17-openj9

    < 0.59.0-r1

  • chainguardopenjdk-17-openj9-dbg

    < 0.59.0-r1

  • chainguardopenjdk-17-openj9-default-jdk

    < 0.59.0-r1

  • chainguardopenjdk-17-openj9-default-jvm

    < 0.59.0-r1

  • chainguardopenjdk-17-openj9-doc

    < 0.59.0-r1

  • chainguardopenjdk-17-openj9-jmods

    < 0.59.0-r1

  • chainguardopenjdk-17-openj9-jre

    < 0.59.0-r1

  • chainguardopenjdk-21-openj9

    < 0.59.0-r1

  • chainguardopenjdk-21-openj9-dbg

    < 0.59.0-r1

  • chainguardopenjdk-21-openj9-default-jdk

    < 0.59.0-r1

  • chainguardopenjdk-21-openj9-default-jvm

    < 0.59.0-r1

  • chainguardopenjdk-21-openj9-doc

    < 0.59.0-r1

  • chainguardopenjdk-21-openj9-jmods

    < 0.59.0-r1

  • chainguardopenjdk-21-openj9-jre

    < 0.59.0-r1

  • chainguardopenjdk-25-openj9

    < 0.59.0-r1

  • chainguardopenjdk-25-openj9-dbg

    < 0.59.0-r1

  • chainguardopenjdk-25-openj9-default-jdk

    < 0.59.0-r1

  • chainguardopenjdk-25-openj9-default-jvm

    < 0.59.0-r1

  • chainguardopenjdk-25-openj9-jmods

    < 0.59.0-r1

  • chainguardopenjdk-25-openj9-jre

    < 0.59.0-r1

  • chainguardopenjdk-26-openj9

    < 0.59.0-r1

  • chainguardopenjdk-26-openj9-dbg

    < 0.59.0-r1

  • chainguardopenjdk-26-openj9-default-jdk

    < 0.59.0-r1

  • chainguardopenjdk-26-openj9-default-jvm

    < 0.59.0-r1

  • chainguardopenjdk-26-openj9-jmods

    < 0.59.0-r1

  • chainguardopenjdk-26-openj9-jre

    < 0.59.0-r1

  • chainguardopenjdk-8-openj9

    < 0.59.0-r1

  • chainguardopenjdk-8-openj9-dbg

    < 0.59.0-r1

  • chainguardopenjdk-8-openj9-default-jdk

    < 0.59.0-r1

  • chainguardopenjdk-8-openj9-default-jvm

    < 0.59.0-r1

  • chainguardopenjdk-8-openj9-doc

    < 0.59.0-r1

  • chainguardopenjdk-8-openj9-jre

    < 0.59.0-r1

  • sunjdk

    ≤ 5.0 | ≤ 6 | 5.0:update_1 | 5.0:update_10 | 5.0:update_11 | 5.0:update_12 | 5.0:update_13 | 5.0:update_14 | 5.0:update_15 | 5.0:update_2 | 5.0:update_3 | 5.0:update_4 | 5.0:update_5 | 5.0:update_6 | 5.0:update_7 | 5.0:update_8 | 5.0:update_9 | 6 | 6:update_1 | 6:update_2 | 6:update_3 | 6:update_4 | 6:update_5 | 6:update_6 | 6:update_7 | 6:update_8 | 6:update_9

  • sunjre

    ≤ 1.4.2_18 | ≤ 5.0 | ≤ 6 | 1.4.2_1 | 1.4.2_2 | 1.4.2_3 | 1.4.2_4 | 1.4.2_5 | 1.4.2_6 | 1.4.2_7 | 1.4.2_8 | 1.4.2_9 | 1.4.2_10 | 1.4.2_11 | 1.4.2_12 | 1.4.2_13 | 1.4.2_14 | 1.4.2_15 | 1.4.2_16 | 1.4.2_17 | 5.0 | 5.0:update_1 | 5.0:update_10 | 5.0:update_11 | 5.0:update_12 | 5.0:update_13 | 5.0:update_14 | 5.0:update_15 | 5.0:update_2 | 5.0:update_3 | 5.0:update_4 | 5.0:update_5 | 5.0:update_6 | 5.0:update_7 | 5.0:update_8 | 5.0:update_9 | 6 | 6:update_1 | 6:update_2 | 6:update_3 | 6:update_4 | 6:update_5 | 6:update_6 | 6:update_7 | 6:update_8 | 6:update_9

  • sunsdk

    ≤ 1.4.2_18 | 1.4.2_1 | 1.4.2_2 | 1.4.2_3 | 1.4.2_4 | 1.4.2_5 | 1.4.2_6 | 1.4.2_7 | 1.4.2_8 | 1.4.2_9 | 1.4.2_10 | 1.4.2_11 | 1.4.2_12 | 1.4.2_13 | 1.4.2_14 | 1.4.2_15 | 1.4.2_16 | 1.4.2_17

References (37)