First published: Wed Jul 09 2008(Updated: )
Secure Static Versioning in Sun Java JDK and JRE 6 Update 6 and earlier, and 5.0 Update 6 through 15, does not properly prevent execution of applets on older JRE releases, which might allow remote attackers to exploit vulnerabilities in these older releases.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Sun JDK | =5.0-update_12 | |
Sun JDK | =5.0-update_15 | |
Sun JRE | =5.0-update_13 | |
Sun JDK | =5.0-update_11 | |
Sun JDK | =5.0-update_8 | |
Sun JRE | =5.0-update_14 | |
Sun JRE | =6-update_3 | |
Sun JRE | =6-update_4 | |
Sun JRE | =5.0-update_12 | |
Sun JDK | =6-update_1 | |
Sun JDK | =6-update_3 | |
Sun JRE | =6-update_2 | |
Sun JDK | =6-update_4 | |
Sun JRE | =5.0-update_9 | |
Sun JRE | =5.0-update_8 | |
Sun JRE | =5.0-update_7 | |
Sun JDK | =5.0-update_6 | |
Sun JRE | =5.0-update_15 | |
Sun JRE | <=6 | |
Sun JRE | =6-update_5 | |
Sun JDK | <=6 | |
Sun JDK | =5.0-update_14 | |
Sun JDK | =6-update_2 | |
Sun JDK | =5.0-update_13 | |
Sun JRE | =5.0-update_6 | |
Sun JRE | =5.0-update_11 | |
Sun JRE | =6-update_1 | |
Sun JDK | =6-update_5 | |
Sun JDK | =5.0-update_10 | |
Sun JDK | =5.0-update_9 | |
Sun JRE | =5.0-update_10 | |
Sun JDK | =5.0-update_7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-3115 is classified as a medium severity vulnerability that can allow exploitation of older Java Runtime Environment versions.
To fix CVE-2008-3115, update to the latest version of the Sun Java JDK or JRE that addresses this vulnerability.
CVE-2008-3115 affects Sun Java JDK versions 5.0 Update 6 through Update 15 and JRE versions 6 Update 6 and earlier.
The implications of CVE-2008-3115 include the potential for remote attackers to exploit vulnerabilities in outdated Java versions.
CVE-2008-3115 exploits older JRE releases by failing to properly prevent the execution of applets, potentially allowing an attacker to trigger vulnerabilities.