CVE Database
/

CVE-2010-3561

Back to search

CVE-2010-3561

Published: Oct 19, 2010

Modified: Aug 7, 2024

PUBLISHED

Description

Unspecified vulnerability in the CORBA component in Oracle Java SE and Java for Business 6 Update 21 and 5.0 Update 25 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors. NOTE: the previous information was obtained from the October 2010 CPU. Oracle has not commented on claims from a reliable downstream vendor that this involves the use of the privileged accept method in the ServerSocket class, which does not limit which hosts can connect and allows remote attackers to bypass intended network access restrictions.

VendorProductVersions

n/a

n/a

affected
n/a

References

RHSA-2010:0865
vendor-advisory
x_refsource_REDHAT
GLSA-201406-32
vendor-advisory
x_refsource_GENTOO
HPSBMU02799
vendor-advisory
x_refsource_HP
RHSA-2010:0770
vendor-advisory
x_refsource_REDHAT
SSRT100333
vendor-advisory
x_refsource_HP
RHSA-2010:0768
vendor-advisory
x_refsource_REDHAT
FEDORA-2010-16240
vendor-advisory
x_refsource_FEDORA
44013
vdb-entry
x_refsource_BID
USN-1010-1
vendor-advisory
x_refsource_UBUNTU
oval:org.mitre.oval:def:12200
vdb-entry
signature
x_refsource_OVAL
42974
third-party-advisory
x_refsource_SECUNIA
41972
third-party-advisory
x_refsource_SECUNIA
ADV-2010-3086
vdb-entry
x_refsource_VUPEN
HPSBUX02608
vendor-advisory
x_refsource_HP
oval:org.mitre.oval:def:12437
vdb-entry
signature
x_refsource_OVAL
42377
third-party-advisory
x_refsource_SECUNIA
SUSE-SR:2010:019
vendor-advisory
x_refsource_SUSE
FEDORA-2010-16312
vendor-advisory
x_refsource_FEDORA
FEDORA-2010-16294
vendor-advisory
x_refsource_FEDORA

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now