Sun Java SE in JDK and JRE 5.0 before Update 22, JDK and JRE 6 before Update 17, SDK and JRE 1.3.x before 1.3.1_27, and SDK and JRE 1.4.x before 1.4.2_24 does not properly parse color profiles, which allows remote attackers to gain privileges via a crafted image file, aka Bug Id 6862970.
Project Subscriptions
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-07T06:45:50.331Z
Reserved: 2009-11-05T00:00:00
Link: CVE-2009-3868
No data.
Status : Deferred
Published: 2009-11-05T16:30:00.360
Modified: 2025-04-09T00:30:58.490
Link: CVE-2009-3868
OpenCVE Enrichment
No data.
Weaknesses