Threat Level: green Handler on Duty: Rob VandenBrink

SANS ISC InfoSec Handlers Diary Blog


Sign Up for Free!   Forgot Password?
Log In or Sign Up for Free!

Sun Java JRE sandbox bypass vulnerability

Published: 2006-02-08
Last Updated: 2006-02-09 17:19:11 UTC
by Jason Lam (Version: 2)
0 comment(s)
Sun has released an alert on 7 vulnerabilities in JRE. These vulnerabilities are related to the use of the "reflection" API in JRE. As noted in the alert, there is no workaround and upgrading to the latest version is the only solution.

Sun advisory: http://sunsolve.sun.com/search/document.do?assetkey=1-26-102171-1

Earlier we reported that these vulnerabilities are related to warnings given by US-CERT and AusCERT last month. However, this is not the case as these vulnerabilities are brand new.

------------
Jason Lam
Keywords:
0 comment(s)
Diary Archives