CVE-2005-0418: High severity Sun J2se vulnerability
Argument injection vulnerability in Java Web Start for J2SE 1.4.2 up to 1.4.206, on Mac OS X, allows untrusted applications to gain privileges via the value parameter of a property tag in a JNLP file. NOTE: it is highly likely that this item will be MERGED with CVE-2005-0836.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2005-0418?
CVE-2005-0418 is considered to have a moderate severity level due to the potential for untrusted applications to gain elevated privileges.
How do I fix CVE-2005-0418?
To fix CVE-2005-0418, it is recommended to upgrade to a later version of J2SE that addresses this vulnerability.
What software is affected by CVE-2005-0418?
CVE-2005-0418 affects Sun J2SE versions 1.4.2 up to and including 1.4.2_06 on Mac OS X.
What type of vulnerability is CVE-2005-0418?
CVE-2005-0418 is classified as an argument injection vulnerability allowing untrusted applications to manipulate system properties.
Can CVE-2005-0418 be exploited remotely?
Yes, CVE-2005-0418 can be exploited remotely through malicious JNLP files delivered via network or web services.