Unspecified vulnerability in the Java Runtime Environment (JRE) Applet Class Loader in Sun JDK and JRE 5.0 Update 11 and earlier, 6 through 6 Update 1, and SDK and JRE 1.4.2_14 and earlier, allows remote attackers to violate the security model for an applet's outbound connections by connecting to certain localhost services running on the machine that loaded the applet.
References
Link Providers
http://dev2dev.bea.com/pub/advisory/248 cve-icon cve-icon
http://docs.info.apple.com/article.html?artnum=307177 cve-icon cve-icon
http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01269450 cve-icon cve-icon
http://lists.apple.com/archives/Security-announce/2007/Dec/msg00001.html cve-icon cve-icon
http://secunia.com/advisories/26314 cve-icon cve-icon
http://secunia.com/advisories/26369 cve-icon cve-icon
http://secunia.com/advisories/26631 cve-icon cve-icon
http://secunia.com/advisories/26645 cve-icon cve-icon
http://secunia.com/advisories/26933 cve-icon cve-icon
http://secunia.com/advisories/27266 cve-icon cve-icon
http://secunia.com/advisories/27635 cve-icon cve-icon
http://secunia.com/advisories/28115 cve-icon cve-icon
http://secunia.com/advisories/30805 cve-icon cve-icon
http://slackware.com/security/viewer.php?l=slackware-security&y=2007&m=slackware-security.486841 cve-icon cve-icon
http://sunsolve.sun.com/search/document.do?assetkey=1-26-102995-1 cve-icon cve-icon
http://support.avaya.com/elmodocs2/security/ASA-2007-322.htm cve-icon cve-icon
http://www.gentoo.org/security/en/glsa/glsa-200709-15.xml cve-icon cve-icon
http://www.novell.com/linux/security/advisories/2007_56_ibmjava.html cve-icon cve-icon
http://www.redhat.com/support/errata/RHSA-2007-0818.html cve-icon cve-icon
http://www.redhat.com/support/errata/RHSA-2007-0829.html cve-icon cve-icon
http://www.redhat.com/support/errata/RHSA-2008-0133.html cve-icon cve-icon
http://www.securityfocus.com/bid/25054 cve-icon cve-icon
http://www.securitytracker.com/id?1018428 cve-icon cve-icon
http://www.vupen.com/english/advisories/2007/2573 cve-icon cve-icon
http://www.vupen.com/english/advisories/2007/3009 cve-icon cve-icon
http://www.vupen.com/english/advisories/2007/3861 cve-icon cve-icon
http://www.vupen.com/english/advisories/2007/4224 cve-icon cve-icon
https://exchange.xforce.ibmcloud.com/vulnerabilities/35491 cve-icon cve-icon
https://nvd.nist.gov/vuln/detail/CVE-2007-3922 cve-icon
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10387 cve-icon cve-icon
https://www.cve.org/CVERecord?id=CVE-2007-3922 cve-icon
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2007-07-21T00:00:00

Updated: 2024-08-07T14:37:05.746Z

Reserved: 2007-07-20T00:00:00

Link: CVE-2007-3922

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2007-07-21T00:30:00.000

Modified: 2017-09-29T01:29:09.673

Link: CVE-2007-3922

cve-icon Redhat

Severity : Moderate

Publid Date: 2007-07-18T00:00:00Z

Links: CVE-2007-3922 - Bugzilla