First published: Thu Feb 09 2006(Updated: )
Multiple unspecified vulnerabilities in Sun Java JDK and JRE 5.0 Update 5 and earlier allow remote attackers to bypass Java sandbox security and obtain privileges via unspecified vectors involving the reflection APIs, aka the "fifth, sixth, and seventh issues."
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
OpenJDK | <=1.5.0 | |
Sun JRE | <=1.5.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-0617 is considered a critical vulnerability that allows remote attackers to bypass Java sandbox security.
The recommended fix for CVE-2006-0617 is to update to the latest version of the Sun Java JDK or JRE beyond Update 5.
CVE-2006-0617 affects Sun Java JDK and JRE version 5.0 Update 5 and earlier.
Yes, CVE-2006-0617 can be exploited remotely, allowing attackers to gain elevated privileges.
Applications that utilize vulnerable versions of Sun Java JDK and JRE and rely on reflection APIs may be susceptible to CVE-2006-0617.