First published: Thu Dec 04 2008(Updated: )
The Java Runtime Environment (JRE) contains the software and tools that<br>users need to run applets and applications written using the Java<br>programming language. <br>A vulnerability was found in in Java Web Start. If a user visits a<br>malicious website, an attacker could misuse this flaw to execute arbitrary<br>code. (CVE-2008-2086)<br>Additionally, these packages fix several other critical vulnerabilities.<br>These are summarized in the "Advance notification of Security Updates for<br>Java SE" from Sun Microsystems.<br>Users of java-1.6.0-sun should upgrade to these updated packages, which<br>correct these issues.
Affected Software | Affected Version | How to fix |
---|
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of RHSA-2008:1018 is considered critical due to the potential for remote code execution.
To fix RHSA-2008:1018, you should update to the latest version of the Java Runtime Environment as recommended by the security advisory.
RHSA-2008:1018 affects systems running vulnerable versions of the Java Runtime Environment.
RHSA-2008:1018 is a remote code execution vulnerability found in Java Web Start.
Yes, an attacker can exploit RHSA-2008:1018 if a user visits a malicious website.