CVE Database
/

CVE-2010-3571

Back to search

CVE-2010-3571

Published: Oct 19, 2010

Modified: Aug 7, 2024

PUBLISHED

Description

Unspecified vulnerability in the 2D component in Oracle Java SE and Java for Business 6 Update 21, 5.0 Update 25, 1.4.2_27, and 1.3.1_28 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors. NOTE: the previous information was obtained from the October 2010 CPU. Oracle has not commented on claims from a reliable researcher that this is an integer overflow in the color profile parser that allows remote attackers to execute arbitrary code via a crafted Tag structure in a color profile.

VendorProductVersions

n/a

n/a

affected
n/a

References

HPSBMU02799
vendor-advisory
x_refsource_HP
SUSE-SA:2010:061
vendor-advisory
x_refsource_SUSE
RHSA-2010:0770
vendor-advisory
x_refsource_REDHAT
SSRT100333
vendor-advisory
x_refsource_HP
ADV-2011-0183
vdb-entry
x_refsource_VUPEN
RHSA-2010:0987
vendor-advisory
x_refsource_REDHAT
RHSA-2010:0986
vendor-advisory
x_refsource_REDHAT
44954
third-party-advisory
x_refsource_SECUNIA
oval:org.mitre.oval:def:12177
vdb-entry
signature
x_refsource_OVAL
RHSA-2011:0880
vendor-advisory
x_refsource_REDHAT
RHSA-2011:0169
vendor-advisory
x_refsource_REDHAT
oval:org.mitre.oval:def:12285
vdb-entry
signature
x_refsource_OVAL
43965
vdb-entry
x_refsource_BID
42974
third-party-advisory
x_refsource_SECUNIA
ADV-2010-3086
vdb-entry
x_refsource_VUPEN
HPSBUX02608
vendor-advisory
x_refsource_HP
RHSA-2010:0786
vendor-advisory
x_refsource_REDHAT
43005
third-party-advisory
x_refsource_SECUNIA
42377
third-party-advisory
x_refsource_SECUNIA
SUSE-SR:2010:019
vendor-advisory
x_refsource_SUSE
ADV-2010-2745
vdb-entry
x_refsource_VUPEN

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now