First published: Mon Aug 10 2009(Updated: )
Unspecified vulnerability in the javax.swing.plaf.synth.SynthContext.isSubregion method in the Swing implementation in Sun Java SE 6 before Update 15 allows context-dependent attackers to cause a denial of service (NullPointerException in the Jemmy library) via unknown vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Sun Java SE | <=6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2009-2720 has been classified as a vulnerability that can lead to denial of service.
CVE-2009-2720 can allow context-dependent attackers to cause a NullPointerException, impacting application stability.
CVE-2009-2720 affects Sun Java SE 6 prior to Update 15.
Yes, users are advised to update to Java SE 6 Update 15 or later to mitigate CVE-2009-2720.
CVE-2009-2720 can lead to a Denial of Service attack through the exploitation of the SynthContext.isSubregion method.