CVE-2009-1105: High severity Sun Java vulnerability
The Java Plug-in in Java SE Development Kit (JDK) and Java Runtime Environment (JRE) 6 Update 12, 11, and 10 allows user-assisted remote attackers to cause a trusted applet to run in an older JRE version, which can be used to exploit vulnerabilities in that older version, aka CR 6706490.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2009-1105?
CVE-2009-1105 is classified as a critical vulnerability allowing remote attackers to exploit older versions of the Java Runtime Environment.
How do I fix CVE-2009-1105?
To fix CVE-2009-1105, upgrade to the latest version of the Java Runtime Environment that is no longer vulnerable.
What systems are affected by CVE-2009-1105?
CVE-2009-1105 affects the Java SE Development Kit and Java Runtime Environment versions 6 Update 12, 11, and 10.
What kind of attack is possible with CVE-2009-1105?
CVE-2009-1105 allows user-assisted remote attackers to run a trusted applet in an older and vulnerable JRE version.
Is CVE-2009-1105 a zero-day vulnerability?
CVE-2009-1105 was discovered and reported in 2009 but not necessarily classified as a zero-day, as it is related to outdated software.