Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Integer overflow in the JAR unpacking utility (unpack200) in the unpack library (unpack.dll) in Java Runtime Environment (JRE) for Sun JDK and JRE 6 Update 10 and earlier, and JDK and JRE 5.0 Update 16 and earlier, allows untrusted applications and applets to gain privileges via a Pack200 compressed JAR file that triggers a heap-based buffer overflow.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
SUN JRE SDK JDK中JAR解包组件权限提升漏洞
Vulnerability Description
Solaris系统的Java运行时环境(JRE)为JAVA应用程序提供可靠的运行环境。 SUN JDK和JRE 6 Update 10及更早版本中JRE的JAR解包组件(unpack200);JDK 和 JRE 5.0 Update 16及更早版本;存在整形溢出漏洞,这允许未受信任的应用程序和applet通过一个pack200压缩的jar文件来触发一个堆缓冲区溢出,从而提升权限 。
CVSS Information
N/A
Vulnerability Type
N/A