First published: Mon Aug 10 2009(Updated: )
The plugin functionality in Sun Java SE 6 before Update 15 does not properly implement version selection, which allows context-dependent attackers to leverage vulnerabilities in "old zip and certificate handling" and have unspecified other impact via unknown vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Sun Java SE | <=6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2009-2716 is classified as a medium severity vulnerability due to its potential exploitation by attackers.
To fix CVE-2009-2716, update to Java SE 6 Update 15 or later.
CVE-2009-2716 affects systems running Sun Java SE 6 prior to Update 15.
CVE-2009-2716 can allow context-dependent attackers to exploit vulnerabilities related to old zip and certificate handling.
CVE-2009-2716 affects all versions of Sun Java SE 6 before Update 15.