Unspecified vulnerability in scripting language support in Sun Java Runtime Environment (JRE) in JDK and JRE 6 Update 6 and earlier allows context-dependent attackers to gain privileges via an untrusted (1) application or (2) applet, as demonstrated by an application or applet that grants itself privileges to (a) read local files, (b) write to local files, or (c) execute local programs.
References
Link Providers
http://lists.apple.com/archives/security-announce//2008/Sep/msg00007.html cve-icon cve-icon
http://lists.opensuse.org/opensuse-security-announce/2008-08/msg00005.html cve-icon cve-icon
http://marc.info/?l=bugtraq&m=122331139823057&w=2 cve-icon cve-icon
http://secunia.com/advisories/31010 cve-icon cve-icon
http://secunia.com/advisories/31600 cve-icon cve-icon
http://secunia.com/advisories/32018 cve-icon cve-icon
http://secunia.com/advisories/32179 cve-icon cve-icon
http://secunia.com/advisories/32180 cve-icon cve-icon
http://secunia.com/advisories/32436 cve-icon cve-icon
http://secunia.com/advisories/33238 cve-icon cve-icon
http://secunia.com/advisories/37386 cve-icon cve-icon
http://security.gentoo.org/glsa/glsa-200911-02.xml cve-icon cve-icon
http://sunsolve.sun.com/search/document.do?assetkey=1-66-238687-1 cve-icon cve-icon
http://support.apple.com/kb/HT3179 cve-icon cve-icon
http://support.avaya.com/elmodocs2/security/ASA-2008-428.htm cve-icon cve-icon
http://support.avaya.com/elmodocs2/security/ASA-2008-509.htm cve-icon cve-icon
http://www.redhat.com/support/errata/RHSA-2008-0594.html cve-icon cve-icon
http://www.redhat.com/support/errata/RHSA-2008-0906.html cve-icon cve-icon
http://www.redhat.com/support/errata/RHSA-2008-1045.html cve-icon cve-icon
http://www.securityfocus.com/archive/1/497041/100/0/threaded cve-icon cve-icon
http://www.securityfocus.com/bid/30144 cve-icon cve-icon
http://www.securitytracker.com/id?1020456 cve-icon cve-icon
http://www.us-cert.gov/cas/techalerts/TA08-193A.html cve-icon cve-icon
http://www.vmware.com/security/advisories/VMSA-2008-0016.html cve-icon cve-icon
http://www.vupen.com/english/advisories/2008/2056/references cve-icon cve-icon
http://www.vupen.com/english/advisories/2008/2740 cve-icon cve-icon
https://exchange.xforce.ibmcloud.com/vulnerabilities/43660 cve-icon cve-icon
https://nvd.nist.gov/vuln/detail/CVE-2008-3109 cve-icon
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A8540 cve-icon cve-icon
https://www.cve.org/CVERecord?id=CVE-2008-3109 cve-icon
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2008-07-09T23:00:00

Updated: 2024-08-07T09:28:41.157Z

Reserved: 2008-07-09T00:00:00

Link: CVE-2008-3109

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2008-07-09T23:41:00.000

Modified: 2018-10-11T20:46:28.610

Link: CVE-2008-3109

cve-icon Redhat

Severity : Critical

Publid Date: 2008-07-08T00:00:00Z

Links: CVE-2008-3109 - Bugzilla