{ "CVE_data_meta": { "ASSIGNER": "cve@mitre.org", "ID": "CVE-2007-5232", "STATE": "PUBLIC" }, "affects": { "vendor": { "vendor_data": [ { "product": { "product_data": [ { "product_name": "n/a", "version": { "version_data": [ { "version_value": "n/a" } ] } } ] }, "vendor_name": "n/a" } ] } }, "data_format": "MITRE", "data_type": "CVE", "data_version": "4.0", "description": { "description_data": [ { "lang": "eng", "value": "Sun Java Runtime Environment (JRE) in JDK and JRE 6 Update 2 and earlier, JDK and JRE 5.0 Update 12 and earlier, SDK and JRE 1.4.2_15 and earlier, and SDK and JRE 1.3.1_20 and earlier, when applet caching is enabled, allows remote attackers to violate the security model for an applet's outbound connections via a DNS rebinding attack." } ] }, "problemtype": { "problemtype_data": [ { "description": [ { "lang": "eng", "value": "n/a" } ] } ] }, "references": { "reference_data": [ { "name": "RHSA-2008:0132", "refsource": "REDHAT", "url": "http://www.redhat.com/support/errata/RHSA-2008-0132.html" }, { "name": "http://conference.hitb.org/hitbsecconf2007kl/materials/D2T1%20-%20Billy%20Rios%20-%20Slipping%20Past%20the%20Firewall.pdf", "refsource": "MISC", "url": "http://conference.hitb.org/hitbsecconf2007kl/materials/D2T1%20-%20Billy%20Rios%20-%20Slipping%20Past%20the%20Firewall.pdf" }, { "name": "RHSA-2007:1041", "refsource": "REDHAT", "url": "http://www.redhat.com/support/errata/RHSA-2007-1041.html" }, { "name": "http://docs.info.apple.com/article.html?artnum=307177", "refsource": "MISC", "url": "http://docs.info.apple.com/article.html?artnum=307177" }, { "name": "ADV-2007-3895", "refsource": "VUPEN", "url": "http://www.vupen.com/english/advisories/2007/3895" }, { "name": "30676", "refsource": "SECUNIA", "url": "http://secunia.com/advisories/30676" }, { "name": "29042", "refsource": "SECUNIA", "url": "http://secunia.com/advisories/29042" }, { "name": "27693", "refsource": "SECUNIA", "url": "http://secunia.com/advisories/27693" }, { "name": "http://support.novell.com/techcenter/psdb/0c36b6416afc3868b8b1b9012955e323.html", "refsource": "CONFIRM", "url": "http://support.novell.com/techcenter/psdb/0c36b6416afc3868b8b1b9012955e323.html" }, { "name": "SUSE-SA:2007:055", "refsource": "SUSE", "url": "http://www.novell.com/linux/security/advisories/2007_55_java.html" }, { "name": "29897", "refsource": "SECUNIA", "url": "http://secunia.com/advisories/29897" }, { "name": "27206", "refsource": "SECUNIA", "url": "http://secunia.com/advisories/27206" }, { "name": "27804", "refsource": "SECUNIA", "url": "http://secunia.com/advisories/27804" }, { "name": "GLSA-200804-28", "refsource": "GENTOO", "url": "http://security.gentoo.org/glsa/glsa-200804-28.xml" }, { "name": "HPSBUX02284", "refsource": "HP", "url": "http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01234533" }, { "name": "29858", "refsource": "SECUNIA", "url": "http://secunia.com/advisories/29858" }, { "name": "RHSA-2007:0963", "refsource": "REDHAT", "url": "http://www.redhat.com/support/errata/RHSA-2007-0963.html" }, { "name": "25918", "refsource": "BID", "url": "http://www.securityfocus.com/bid/25918" }, { "name": "APPLE-SA-2007-12-14", "refsource": "APPLE", "url": "http://lists.apple.com/archives/Security-announce/2007/Dec/msg00001.html" }, { "name": "RHSA-2008:0100", "refsource": "REDHAT", "url": "http://www.redhat.com/support/errata/RHSA-2008-0100.html" }, { "name": "ADV-2008-0609", "refsource": "VUPEN", "url": "http://www.vupen.com/english/advisories/2008/0609" }, { "name": "SUSE-SA:2008:025", "refsource": "SUSE", "url": "http://lists.opensuse.org/opensuse-security-announce/2008-04/msg00010.html" }, { "name": "27261", "refsource": "SECUNIA", "url": "http://secunia.com/advisories/27261" }, { "name": "1018768", "refsource": "SECTRACK", "url": "http://www.securitytracker.com/id?1018768" }, { "name": "oval:org.mitre.oval:def:9331", "refsource": "OVAL", "url": "https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9331" }, { "name": "SSRT071483", "refsource": "HP", "url": "http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01234533" }, { "name": "20071029 FLEA-2007-0061-1 sun-jre sun-jdk", "refsource": "BUGTRAQ", "url": "http://www.securityfocus.com/archive/1/482926/100/0/threaded" }, { "name": "sun-java-appletcaching-security-bypass(36941)", "refsource": "XF", "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/36941" }, { "name": "28777", "refsource": "SECUNIA", "url": "http://secunia.com/advisories/28777" }, { "name": "RHSA-2008:0156", "refsource": "REDHAT", "url": "http://www.redhat.com/support/errata/RHSA-2008-0156.html" }, { "name": "BEA08-198.00", "refsource": "BEA", "url": "http://dev2dev.bea.com/pub/advisory/272" }, { "name": "ADV-2007-4224", "refsource": "VUPEN", "url": "http://www.vupen.com/english/advisories/2007/4224" }, { "name": "30780", "refsource": "SECUNIA", "url": "http://secunia.com/advisories/30780" }, { "name": "103079", "refsource": "SUNALERT", "url": "http://sunsolve.sun.com/search/document.do?assetkey=1-26-103079-1" }, { "name": "VU#336105", "refsource": "CERT-VN", "url": "http://www.kb.cert.org/vuls/id/336105" }, { "name": "201519", "refsource": "SUNALERT", "url": "http://sunsolve.sun.com/search/document.do?assetkey=1-66-201519-1" }, { "name": "28880", "refsource": "SECUNIA", "url": "http://secunia.com/advisories/28880" }, { "name": "27716", "refsource": "SECUNIA", "url": "http://secunia.com/advisories/27716" }, { "name": "ADV-2008-1856", "refsource": "VUPEN", "url": "http://www.vupen.com/english/advisories/2008/1856/references" }, { "name": "http://www.vmware.com/security/advisories/VMSA-2008-0010.html", "refsource": "CONFIRM", "url": "http://www.vmware.com/security/advisories/VMSA-2008-0010.html" }, { "name": "29214", "refsource": "SECUNIA", "url": "http://secunia.com/advisories/29214" }, { "name": "28115", "refsource": "SECUNIA", "url": "http://secunia.com/advisories/28115" }, { "name": "29340", "refsource": "SECUNIA", "url": "http://secunia.com/advisories/29340" }, { "name": "GLSA-200804-20", "refsource": "GENTOO", "url": "http://www.gentoo.org/security/en/glsa/glsa-200804-20.xml" }, { "name": "GLSA-200806-11", "refsource": "GENTOO", "url": "http://www.gentoo.org/security/en/glsa/glsa-200806-11.xml" }, { "name": "http://conference.hitb.org/hitbsecconf2007kl/?page_id=148", "refsource": "MISC", "url": "http://conference.hitb.org/hitbsecconf2007kl/?page_id=148" } ] } }