Severity: High
ID: 42457
File Name: suse_11_0_java-1_5_0-sun-091109.nasl
Version: 1.16
Type: local
Agent: unix
Family: SuSE Local Security Checks
Published: 11/11/2009
Updated: 1/14/2021
Supported Sensors: Frictionless Assessment AWS, Frictionless Assessment Azure, Frictionless Assessment Agent, Nessus Agent, Nessus
Risk Factor: Critical
Score: 9.8
Risk Factor: High
Base Score: 9.3
Vector: CVSS2#AV:N/AC:M/Au:N/C:C/I:C/A:C
CPE: p-cpe:/a:novell:opensuse:java-1_5_0-sun, p-cpe:/a:novell:opensuse:java-1_5_0-sun-alsa, p-cpe:/a:novell:opensuse:java-1_5_0-sun-demo, p-cpe:/a:novell:opensuse:java-1_5_0-sun-devel, p-cpe:/a:novell:opensuse:java-1_5_0-sun-jdbc, p-cpe:/a:novell:opensuse:java-1_5_0-sun-plugin, p-cpe:/a:novell:opensuse:java-1_5_0-sun-src, cpe:/o:novell:opensuse:11.0
Required KB Items: Host/local_checks_enabled, Host/cpu, Host/SuSE/release, Host/SuSE/rpm-list
Exploit Available: true
Exploit Ease: Exploits are available
Patch Publication Date: 11/9/2009
CANVAS (CANVAS)
Core Impact
Metasploit (Sun Java JRE AWT setDiffICM Buffer Overflow)
CVE: CVE-2009-3864, CVE-2009-3867, CVE-2009-3868, CVE-2009-3869, CVE-2009-3871, CVE-2009-3872, CVE-2009-3873, CVE-2009-3874, CVE-2009-3875, CVE-2009-3876, CVE-2009-3877