CVE-2003-1134: Low severity Sun Java vulnerability
Published Dec 31, 2003
·Updated
Sun Java 1.3.1, 1.4.1, and 1.4.2 allows local users to cause a denial of service (JVM crash), possibly by calling the ClassDepth function with a null parameter, which causes a crash instead of generating a null pointer exception.
Affected Software
3 affected components
Sun Java=1.3.1
Sun Java=1.4.1
Sun Java=1.4.2
Event History
Dec 31, 2003
CVE Published
05:00 AM
Data Sourced
via NVD·05:00 AM
DescriptionSeverityAffected Software
May 10, 2005
CVE Published
via MITRE·04:00 AM
Data Sourced
via MITRE·04:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2003-1134?
CVE-2003-1134 is classified as a denial of service vulnerability that can cause a JVM crash.
2
How do I fix CVE-2003-1134?
To mitigate CVE-2003-1134, users should upgrade to a version of Sun Java later than 1.4.2.
3
Which versions of Sun Java are affected by CVE-2003-1134?
CVE-2003-1134 affects Sun Java versions 1.3.1, 1.4.1, and 1.4.2.
4
What type of attack does CVE-2003-1134 enable?
CVE-2003-1134 enables local users to perform a denial of service attack by crashing the JVM.
5
Is CVE-2003-1134 specific to certain platforms?
CVE-2003-1134 is primarily relevant to platforms that run vulnerable versions of Sun Java.