First published: Wed Oct 19 2011(Updated: )
Unspecified vulnerability in the Java Runtime Environment component in Oracle Java SE JDK and JRE, 7, 6 Update 27 and earlier, and 5.0 Update 31 and earlier allows remote untrusted Java Web Start applications and untrusted Java applets to affect confidentiality, integrity, and availability via unknown vectors related to Deserialization.
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
Sun JRE | =1.7.0 | |
Sun JDK | =1.7.0 | |
Sun JDK | =1.6.0-update_4 | |
Sun JRE | =1.6.0-update_3 | |
Sun JRE | =1.6.0-update_5 | |
Sun JDK | =1.6.0-update_7 | |
Sun JDK | =1.6.0-update_19 | |
Sun JDK | =1.6.0-update_13 | |
Sun JRE | =1.6.0-update_13 | |
Sun JRE | =1.6.0-update_24 | |
Sun JRE | =1.6.0-update_1 | |
Sun JRE | =1.6.0-update_2 | |
Sun JDK | =1.6.0-update_24 | |
Sun JDK | =1.6.0-update_3 | |
Sun JDK | =1.6.0-update_22 | |
Sun JRE | =1.6.0-update_16 | |
Sun JDK | =1.6.0-update_11 | |
Sun JRE | =1.6.0-update_20 | |
Sun JDK | =1.6.0-update_10 | |
Sun JRE | =1.6.0-update_15 | |
Sun JRE | =1.6.0-update_22 | |
Sun JRE | <=1.6.0 | |
Sun JRE | =1.6.0-update_6 | |
Sun JDK | =1.6.0-update_14 | |
Sun JDK | =1.6.0 | |
Sun JDK | =1.6.0-update_17 | |
Sun JRE | =1.6.0-update_19 | |
Sun JRE | =1.6.0 | |
Sun JDK | =1.6.0-update_5 | |
Sun JRE | =1.6.0-update_18 | |
Sun JDK | =1.6.0-update_23 | |
Sun JDK | =1.6.0-update2 | |
Sun JRE | =1.6.0-update_10 | |
Sun JDK | =1.6.0-update_21 | |
Sun JRE | =1.6.0-update_25 | |
Sun JRE | =1.6.0-update_23 | |
Sun JDK | =1.6.0-update_16 | |
Sun JDK | =1.6.0-update1 | |
Sun JRE | =1.6.0-update_17 | |
Sun JDK | <=1.6.0 | |
Sun JDK | =1.6.0-update_26 | |
Sun JRE | =1.6.0-update_21 | |
Sun JRE | =1.6.0-update_7 | |
Sun JRE | =1.6.0-update_14 | |
Sun JDK | =1.6.0-update_15 | |
Sun JDK | =1.6.0-update_12 | |
Sun JDK | =1.6.0-update_25 | |
Sun JRE | =1.6.0-update_26 | |
Sun JRE | =1.6.0-update_4 | |
Sun JDK | =1.6.0-update_18 | |
Sun JDK | =1.6.0-update_6 | |
Sun JDK | =1.6.0-update_20 | |
Sun JRE | =1.6.0-update_12 | |
Sun JRE | =1.6.0-update_11 | |
Sun JRE | =1.5.0-update22 | |
Sun JRE | =1.5.0 | |
Sun JDK | =1.5.0-update20 | |
Sun JDK | =1.5.0-update15 | |
Sun JDK | =1.5.0-update18 | |
Sun JRE | =1.5.0-update18 | |
Sun JDK | =1.5.0-update27 | |
Sun JDK | =1.5.0-update3 | |
Sun JRE | =1.5.0-update27 | |
Sun JRE | =1.5.0-update2 | |
Sun JDK | =1.5.0-update21 | |
Sun JRE | =1.5.0-update13 | |
Sun JRE | =1.5.0-update24 | |
Sun JRE | =1.5.0-update12 | |
Sun JDK | =1.5.0-update11 | |
Sun JRE | =1.5.0-update26 | |
Sun JDK | =1.5.0-update26 | |
Sun JDK | =1.5.0-update16 | |
Sun JDK | =1.5.0-update17 | |
Sun JRE | =1.5.0-update8 | |
Sun JDK | =1.5.0-update9 | |
Sun JDK | =1.5.0-update22 | |
Sun JRE | =1.5.0-update16 | |
Sun JDK | =1.5.0-update29 | |
Sun JDK | =1.5.0-update28 | |
Sun JRE | =1.5.0-update21 | |
Sun JRE | =1.5.0-update11 | |
Sun JDK | =1.5.0-update6 | |
Sun JDK | =1.5.0-update14 | |
Sun JRE | =1.5.0-update15 | |
Sun JDK | =1.5.0-update23 | |
Sun JRE | =1.5.0-update7 | |
Sun JRE | =1.5.0-update3 | |
Sun JRE | =1.5.0-update20 | |
Sun JRE | =1.5.0-update25 | |
Sun JDK | =1.5.0-update11_b03 | |
Sun JDK | =1.5.0-update1 | |
Sun JDK | =1.5.0-update4 | |
Sun JRE | =1.5.0-update5 | |
Sun JDK | =1.5.0-update7 | |
Sun JRE | =1.5.0-update14 | |
Sun JDK | =1.5.0 | |
Sun JRE | =1.5.0-update6 | |
Sun JDK | <=1.5.0 | |
Sun JRE | =1.5.0-update9 | |
Sun JDK | =1.5.0-update12 | |
Sun JRE | =1.5.0-update1 | |
Sun JDK | =1.5.0-update5 | |
Sun JRE | =1.5.0-update19 | |
Sun JDK | =1.5.0-update24 | |
Sun JRE | =1.5.0-update10 | |
Sun JDK | =1.5.0-update25 | |
Sun JDK | =1.5.0-update7_b03 | |
Sun JDK | =1.5.0-update2 | |
Sun JDK | =1.5.0-update19 | |
Sun JRE | <=1.5.0 | |
Sun JDK | =1.5.0-update13 | |
Sun JDK | =1.5.0-update8 | |
Sun JRE | =1.5.0-update4 | |
Sun JRE | =1.5.0-update23 | |
Sun JRE | =1.5.0-update29 | |
Sun JRE | =1.5.0-update17 | |
Sun JDK | =1.5.0-update10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-3521 is rated as a critical vulnerability that can lead to significant exposure of confidential data and undermine system integrity.
To fix CVE-2011-3521, it is essential to update your Java Runtime Environment to a supported version that is not affected by this vulnerability.
CVE-2011-3521 affects Oracle Java SE JDK and JRE versions 5.0 Update 31 and earlier, 6 Update 27 and earlier, and 7 and earlier.
CVE-2011-3521 impacts remote untrusted Java Web Start applications and untrusted Java applets.
Yes, CVE-2011-3521 can affect the integrity and availability of servers running vulnerable versions of Java.