CVE-2009-2723: Critical severity java vulnerability
Published Aug 10, 2009
·Updated
Unspecified vulnerability in deserialization in the Provider class in Sun Java SE 5.0 before Update 20 has unknown impact and attack vectors, aka BugId 6444262.
Affected Software
1 affected component
Java<=5.0
Remediation
Patch Available
Event History
Aug 10, 2009
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2009-2723?
The severity of CVE-2009-2723 is currently unknown due to unspecified impacts and attack vectors.
2
How do I fix CVE-2009-2723?
To fix CVE-2009-2723, it is recommended to update to Sun Java SE 5.0 Update 20 or later.
3
What versions of Java SE are affected by CVE-2009-2723?
CVE-2009-2723 affects Sun Java SE versions prior to Update 20.
4
What type of vulnerability is CVE-2009-2723?
CVE-2009-2723 is a vulnerability related to deserialization in the Provider class.
5
Can CVE-2009-2723 be exploited remotely?
The details regarding the specific attack vectors for CVE-2009-2723 are unknown, so the potential for remote exploitation is not clearly defined.