The JNLPClassLoader class in IcedTea-Web before 1.0.1, as used in OpenJDK Runtime Environment 1.6.0, allows remote attackers to gain privileges via unknown vectors related to multiple signers and the assignment of "an inappropriate security descriptor."
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-2224-1 | openjdk-6 security update |
EUVD |
EUVD-2011-0721 | The JNLPClassLoader class in IcedTea-Web before 1.0.1, as used in OpenJDK Runtime Environment 1.6.0, allows remote attackers to gain privileges via unknown vectors related to multiple signers and the assignment of "an inappropriate security descriptor." |
Ubuntu USN |
USN-1079-1 | OpenJDK 6 vulnerabilities |
Ubuntu USN |
USN-1079-2 | OpenJDK 6 vulnerabilities |
Ubuntu USN |
USN-1079-3 | OpenJDK 6 vulnerabilities |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Wed, 28 May 2025 15:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
Thu, 22 May 2025 04:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-06T21:58:26.128Z
Reserved: 2011-01-31T00:00:00
Link: CVE-2011-0706
No data.
Status : Deferred
Published: 2011-02-19T01:00:03.277
Modified: 2025-04-11T00:51:21.963
Link: CVE-2011-0706
OpenCVE Enrichment
No data.
Debian DSA
EUVD
Ubuntu USN