Buffer overflow in Sun Java Runtime Environment (JRE) in JDK and JRE 5.0 before Update 10, SDK and JRE 1.4.x before 1.4.2_18, and SDK and JRE 1.3.x before 1.3.1_23 allows context-dependent attackers to gain privileges via unspecified vectors related to font processing.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

References
Link Providers
http://lists.apple.com/archives/security-announce//2008/Sep/msg00008.html cve-icon cve-icon
http://lists.opensuse.org/opensuse-security-announce/2008-08/msg00005.html cve-icon cve-icon
http://lists.opensuse.org/opensuse-security-announce/2008-09/msg00000.html cve-icon cve-icon
http://lists.opensuse.org/opensuse-security-announce/2008-09/msg00002.html cve-icon cve-icon
http://marc.info/?l=bugtraq&m=122331139823057&w=2 cve-icon cve-icon
http://secunia.com/advisories/31010 cve-icon cve-icon
http://secunia.com/advisories/31320 cve-icon cve-icon
http://secunia.com/advisories/31497 cve-icon cve-icon
http://secunia.com/advisories/31600 cve-icon cve-icon
http://secunia.com/advisories/31736 cve-icon cve-icon
http://secunia.com/advisories/32018 cve-icon cve-icon
http://secunia.com/advisories/32179 cve-icon cve-icon
http://secunia.com/advisories/32180 cve-icon cve-icon
http://secunia.com/advisories/33236 cve-icon cve-icon
http://secunia.com/advisories/33237 cve-icon cve-icon
http://secunia.com/advisories/37386 cve-icon cve-icon
http://security.gentoo.org/glsa/glsa-200911-02.xml cve-icon cve-icon
http://sunsolve.sun.com/search/document.do?assetkey=1-66-238666-1 cve-icon cve-icon
http://support.apple.com/kb/HT3178 cve-icon cve-icon
http://support.apple.com/kb/HT3179 cve-icon cve-icon
http://support.avaya.com/elmodocs2/security/ASA-2008-300.htm cve-icon cve-icon
http://support.avaya.com/elmodocs2/security/ASA-2008-507.htm cve-icon cve-icon
http://support.nortel.com/go/main.jsp?cscat=BLTNDETAIL&id=751014 cve-icon cve-icon
http://support.nortel.com/go/main.jsp?cscat=BLTNDETAIL&id=756717 cve-icon cve-icon
http://www.redhat.com/support/errata/RHSA-2008-0790.html cve-icon cve-icon
http://www.redhat.com/support/errata/RHSA-2008-1043.html cve-icon cve-icon
http://www.redhat.com/support/errata/RHSA-2008-1044.html cve-icon cve-icon
http://www.securityfocus.com/archive/1/497041/100/0/threaded cve-icon cve-icon
http://www.securityfocus.com/bid/30147 cve-icon cve-icon
http://www.securitytracker.com/id?1020461 cve-icon cve-icon
http://www.us-cert.gov/cas/techalerts/TA08-193A.html cve-icon cve-icon
http://www.vmware.com/security/advisories/VMSA-2008-0016.html cve-icon cve-icon
http://www.vupen.com/english/advisories/2008/2056/references cve-icon cve-icon
http://www.vupen.com/english/advisories/2008/2740 cve-icon cve-icon
https://exchange.xforce.ibmcloud.com/vulnerabilities/43656 cve-icon cve-icon
https://nvd.nist.gov/vuln/detail/CVE-2008-3108 cve-icon
https://www.cve.org/CVERecord?id=CVE-2008-3108 cve-icon
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-07T09:28:40.939Z

Reserved: 2008-07-09T00:00:00

Link: CVE-2008-3108

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2008-07-09T23:41:00.000

Modified: 2025-04-09T00:30:58.490

Link: CVE-2008-3108

cve-icon Redhat

Severity : Critical

Publid Date: 2008-07-08T00:00:00Z

Links: CVE-2008-3108 - Bugzilla

cve-icon OpenCVE Enrichment

No data.