CVE-2005-3583: High severity Sun Java Runtime Environment (JRE) vulnerability
(1) Java Runtime Environment (JRE) and (2) Software Development Kit (SDK) 1.4.208, 1.4.209, and 1.5.005 and possibly other versions allow remote attackers to cause a denial of service (JVM unresponsive) via a crafted serialized object, such as a font object as demonstrated on JBoss.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2005-3583?
CVE-2005-3583 is classified as a denial of service vulnerability that can render the Java Virtual Machine unresponsive.
How do I fix CVE-2005-3583?
To mitigate CVE-2005-3583, it is advisable to update the Java Runtime Environment or Software Development Kit to a version that is not affected.
Which versions are affected by CVE-2005-3583?
CVE-2005-3583 affects Java Runtime Environment versions 1.4.2_08, 1.4.2_09, and 1.5.0_05, among potentially other versions.
What kind of attack can exploit CVE-2005-3583?
CVE-2005-3583 can be exploited by remote attackers using crafted serialized objects, such as specially designed font objects.
Is CVE-2005-3583 still a problem in modern systems?
CVE-2005-3583 primarily affects older versions of the Java platform, and updating to current versions will eliminate the associated risks.