First published: Fri Aug 17 2007(Updated: )
Unspecified vulnerability in the font parsing implementation in Sun JDK and JRE 5.0 Update 9 and earlier, and SDK and JRE 1.4.2_14 and earlier, allows remote attackers to perform unauthorized actions via an applet that grants certain privileges to itself.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Sun JRE | <=1.4.2 | |
Sun SDK | <=1.4.2_14 | |
OpenJDK | <=1.5.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-4381 is classified as a high severity vulnerability due to its potential to allow remote attackers unauthorized actions.
To mitigate CVE-2007-4381, upgrade to a patched version of Sun JDK or JRE that addresses this vulnerability.
CVE-2007-4381 affects users of Sun JDK and JRE 5.0 Update 9 and earlier, as well as SDK and JRE 1.4.2_14 and earlier.
CVE-2007-4381 can be exploited through malicious applets that can grant themselves elevated privileges.
CVE-2007-4381 is primarily a concern for legacy systems still utilizing the affected versions of Sun JDK and JRE.