CVE Database
/

CVE-2010-0844

Back to search

CVE-2010-0844

Published: Apr 1, 2010

Modified: Aug 7, 2024

PUBLISHED

Description

Unspecified vulnerability in the Sound component in Oracle Java SE and Java for Business 6 Update 18, 5.0 Update 23, 1.4.2_25, and 1.3.1_27 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors. NOTE: the previous information was obtained from the March 2010 CPU. Oracle has not commented on claims from a reliable researcher that this is for improper parsing of a crafted MIDI stream when creating a MixerSequencer object, which causes a pointer to be corrupted and allows a NULL byte to be written to arbitrary memory.

VendorProductVersions

n/a

n/a

affected
n/a

References

APPLE-SA-2010-05-18-1
vendor-advisory
x_refsource_APPLE
HPSBMU02799
vendor-advisory
x_refsource_HP
39317
third-party-advisory
x_refsource_SECUNIA
RHSA-2010:0383
vendor-advisory
x_refsource_REDHAT
40545
third-party-advisory
x_refsource_SECUNIA
ADV-2010-1454
vdb-entry
x_refsource_VUPEN
39819
third-party-advisory
x_refsource_SECUNIA
RHSA-2010:0338
vendor-advisory
x_refsource_REDHAT
ADV-2010-1793
vdb-entry
x_refsource_VUPEN
APPLE-SA-2010-05-18-2
vendor-advisory
x_refsource_APPLE
43308
third-party-advisory
x_refsource_SECUNIA
SSRT100179
vendor-advisory
x_refsource_HP
SSRT100089
vendor-advisory
x_refsource_HP
HPSBUX02524
vendor-advisory
x_refsource_HP
ADV-2010-1523
vdb-entry
x_refsource_VUPEN
SUSE-SR:2010:008
vendor-advisory
x_refsource_SUSE
39659
third-party-advisory
x_refsource_SECUNIA
RHSA-2010:0471
vendor-advisory
x_refsource_REDHAT
SUSE-SR:2010:017
vendor-advisory
x_refsource_SUSE
RHSA-2010:0337
vendor-advisory
x_refsource_REDHAT
RHSA-2010:0489
vendor-advisory
x_refsource_REDHAT
HPSBMA02547
vendor-advisory
x_refsource_HP
40211
third-party-advisory
x_refsource_SECUNIA
ADV-2010-1191
vdb-entry
x_refsource_VUPEN
oval:org.mitre.oval:def:14282
vdb-entry
signature
x_refsource_OVAL

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now