CVE-2004-1029: Critical severity HP Java Sdk-rte vulnerability
The Sun Java Plugin capability in Java 2 Runtime Environment (JRE) 1.4.201, 1.4.204, and possibly earlier versions, does not properly restrict access between Javascript and Java applets during data transfer, which allows remote attackers to load unsafe classes and execute arbitrary code by using the reflection API to access private Java packages.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2004-1029?
CVE-2004-1029 is rated as high severity due to its ability to allow remote attackers to execute arbitrary code.
How do I fix CVE-2004-1029?
To fix CVE-2004-1029, users should upgrade to a patched version of the Java Runtime Environment or Java Development Kit.
What versions are affected by CVE-2004-1029?
CVE-2004-1029 affects Sun Java Plugin in JRE 1.4.2_01, 1.4.2_04, and possibly earlier versions.
What systems are impacted by CVE-2004-1029?
CVE-2004-1029 impacts systems running various versions of Sun JRE and JDK on Windows, Solaris, and Linux.
What kind of attacks can be executed through CVE-2004-1029?
CVE-2004-1029 can be exploited to load unsafe classes and execute arbitrary Java code via malicious Java applets.