Rapid7 Vulnerability & Exploit Database

SUSE Linux Security Vulnerability: CVE-2008-3107

Back to Search

SUSE Linux Security Vulnerability: CVE-2008-3107

Severity
10
CVSS
(AV:N/AC:L/Au:N/C:C/I:C/A:C)
Published
07/09/2008
Created
07/25/2018
Added
02/17/2015
Modified
07/04/2017

Description

Unspecified vulnerability in the Virtual Machine in Sun Java Runtime Environment (JRE) in JDK and JRE 6 before Update 7, JDK and JRE 5.0 before Update 16, and SDK and JRE 1.4.x before 1.4.2_18 allows context-dependent attackers to gain privileges via an untrusted (1) application or (2) applet, as demonstrated by an application or applet that grants itself privileges to (a) read local files, (b) write to local files, or (c) execute local programs.

Solution(s)

  • suse-upgrade-java-1_4_2-sun
  • suse-upgrade-java-1_4_2-sun-alsa
  • suse-upgrade-java-1_4_2-sun-demo
  • suse-upgrade-java-1_4_2-sun-devel
  • suse-upgrade-java-1_4_2-sun-jdbc
  • suse-upgrade-java-1_4_2-sun-plugin
  • suse-upgrade-java-1_4_2-sun-src
  • suse-upgrade-java-1_5_0-sun
  • suse-upgrade-java-1_5_0-sun-alsa
  • suse-upgrade-java-1_5_0-sun-demo
  • suse-upgrade-java-1_5_0-sun-devel
  • suse-upgrade-java-1_5_0-sun-jdbc
  • suse-upgrade-java-1_5_0-sun-plugin
  • suse-upgrade-java-1_5_0-sun-src
  • suse-upgrade-java-1_6_0-sun
  • suse-upgrade-java-1_6_0-sun-alsa
  • suse-upgrade-java-1_6_0-sun-demo
  • suse-upgrade-java-1_6_0-sun-devel
  • suse-upgrade-java-1_6_0-sun-jdbc
  • suse-upgrade-java-1_6_0-sun-plugin
  • suse-upgrade-java2
  • suse-upgrade-java2-jre
  • suse-upgrade-suse-release

With Rapid7 live dashboards, I have a clear view of all the assets on my network, which ones can be exploited, and what I need to do in order to reduce the risk in my environment in real-time. No other tool gives us that kind of value and insight.

– Scott Cheney, Manager of Information Security, Sierra View Medical Center

;