First published: Fri Dec 31 2004(Updated: )
Java 2 Micro Edition (J2ME) does not properly validate bytecode, which allows remote attackers to escape the Kilobyte Virtual Machine (KVM) sandbox and execute arbitrary code.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Sun Java 2 Micro Edition (J2ME) | =micro | |
Sun Java 2 Micro Edition (J2ME) | =micro |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2004-2627 is considered a critical vulnerability as it allows attackers to execute arbitrary code outside the KVM sandbox.
To mitigate CVE-2004-2627, ensure that you are using an updated version of the J2ME platform that addresses this vulnerability.
The exploitation of CVE-2004-2627 can lead to unauthorized code execution, compromising the security of the affected system.
CVE-2004-2627 primarily affects applications running on the Java 2 Micro Edition (J2ME) environment that do not properly validate bytecode.
Yes, CVE-2004-2627 allows remote attackers to exploit the vulnerability to escape the KVM sandbox.