HTTP: Sun Java JNLP java-vm-args Attribute Overflow
This signature detects attempts to exploit a known vulnerability in the Java JRE implementation. Attackers can create a malicious JNLP file that, when loaded by a user, can compromise the user's computer.
Extended Description
Sun Java Web Start is prone to multiple vulnerabilities, including buffer-overflow, privilege-escalation, and information-disclosure issues. Successful exploits may allow attackers to execute arbitrary code, obtain information, or read, write, and execute arbitrary local files in the context of the user running a malicious Web Start application. This may result in a compromise of the underlying system. This issue affects the following versions: JDK and JRE 6 Update 6 and earlier JDK and JRE 5.0 Update 15 and earlier SDK and JRE 1.4.2_17 and earlier
Affected Products
Nortel_networks self-service_mps_1000,Red_hat enterprise_linux_as_extras
srx-branch-19.3
vsrx3bsd-19.2
srx-19.4
vsrx3bsd-19.4
srx-branch-19.4
vsrx-19.4
vsrx-19.2
srx-19.3
srx-branch-12.3
mx-12.3
mx-19.4
vmx-19.4
mx-19.3
vsrx-12.3
vmx-19.3
srx-12.3
Red_hat
Suse
Apple
Gentoo
Sun
Avaya
Nortel_networks
Vmware
10.0