Anti-DNS Pinning and Java Applets with Opera and Firefox
Published Oct 8, 2007
2.6
LOWCVSS 2.0
EPSS 2.68%
Description
Sun Java Runtime Environment (JRE) in JDK and JRE 6 Update 2 and earlier, JDK and JRE 5.0 Update 12 and earlier, SDK and JRE 1.4.2_15 and earlier, and SDK and JRE 1.3.1_20 and earlier, when Firefox or Opera is used, allows remote attackers to violate the security model for JavaScript outbound connections via a multi-pin DNS rebinding attack dependent on the LiveConnect API, in which JavaScript download relies on DNS resolution by the browser, but JavaScript socket operations rely on separate DNS resolution by a Java Virtual Machine (JVM), a different issue than CVE-2007-5273. NOTE: this is similar to CVE-2007-5232.
Affected products
No data.
Running on/with
- n/a
- n/a
- ≤ 1.6.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.6.0
- 1.6.0
- 6
- 6
- ≤ 1.3.1
- ≤ 1.4.2
- ≤ 1.6.0
- 1.3.0
- 1.3.0
- 1.3.1
- 1.3.1
- 1.3.1
- 1.3.1
- 1.3.1
- 1.4
- 1.4.1
- 1.4.2
- 1.4.2_1
- 1.4.2_3
- 1.4.2_8
- 1.4.2_9
- 1.4.2_10
- 1.4.2_11
- 1.4.2_12
- 1.4.2_13
- 1.4.2_14
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.5.0
- 1.6.0
- ≤ 1.3.1_20
- 1.3.1_01
- 1.3.1_01a
- 1.3.1_16
- 1.3.1_18
- 1.3.1_19
- 1.4.2
- 1.4.2_03
- 1.4.2_08
- 1.4.2_09
- 1.4.2_10
- 1.4.2_11
- 1.4.2_12
- 1.4.2_13
- 1.4.2_14
- 1.4.2_15
No data.
Extras for RHEL 3
java-1.4.2-ibm-0:1.4.2.10-1jpp.2.el3
Fixed · RHSA-2008:0132
Extras for RHEL 4
java-1.4.2-ibm-0:1.4.2.10-1jpp.2.el4
Fixed · RHSA-2008:0132
Extras for RHEL 4
java-1.5.0-ibm-1:1.5.0.6-1jpp.2.el4
Fixed · RHSA-2007:1041
Extras for RHEL 4
java-1.5.0-sun-0:1.5.0.13-1jpp.1.el4
Fixed · RHSA-2007:0963
Supplementary for Red Hat Enterprise Linux 5
java-1.4.2-ibm-0:1.4.2.10-1jpp.2.el5
Fixed · RHSA-2008:0132
Supplementary for Red Hat Enterprise Linux 5
java-1.5.0-ibm-1:1.5.0.6-1jpp.1.el5
Fixed · RHSA-2007:1041
Supplementary for Red Hat Enterprise Linux 5
java-1.5.0-sun-0:1.5.0.13-1jpp.1.el5
Fixed · RHSA-2007:0963
| Product | Package | State | Advisory |
|---|---|---|---|
| Extras for RHEL 3 | java-1.4.2-ibm-0:1.4.2.10-1jpp.2.el3 | Fixed | RHSA-2008:0132 |
| Extras for RHEL 4 | java-1.4.2-ibm-0:1.4.2.10-1jpp.2.el4 | Fixed | RHSA-2008:0132 |
| Extras for RHEL 4 | java-1.5.0-ibm-1:1.5.0.6-1jpp.2.el4 | Fixed | RHSA-2007:1041 |
| Extras for RHEL 4 | java-1.5.0-sun-0:1.5.0.13-1jpp.1.el4 | Fixed | RHSA-2007:0963 |
| Supplementary for Red Hat Enterprise Linux 5 | java-1.4.2-ibm-0:1.4.2.10-1jpp.2.el5 | Fixed | RHSA-2008:0132 |
| Supplementary for Red Hat Enterprise Linux 5 | java-1.5.0-ibm-1:1.5.0.6-1jpp.1.el5 | Fixed | RHSA-2007:1041 |
| Supplementary for Red Hat Enterprise Linux 5 | java-1.5.0-sun-0:1.5.0.13-1jpp.1.el5 | Fixed | RHSA-2007:0963 |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Metrics
No CVSS v4.0 score for this CVE.
No CVSS v3.1 score for this CVE.
No CVSS v3.0 score for this CVE.
AV:N/AC:H/Au:N/C:N/I:P/A:N
This CVE is not in the KEV list.
No CISA SSVC assessment for this CVE yet.
Estimated probability of exploitation in the wild in the next 30 days (FIRST EPSS). As of Oct 1, 2026.
Score over time
2022–2026- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Percentile over time
- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Table of values (17 key points)
Flat stretches are collapsed; showing up to 120 newest points.
| Date | Score | Percentile | Model |
|---|---|---|---|
| Oct 1, 2026 | 2.68% (0.02678) | 85.29th | v5 (v2026.06.15) |
| Jun 15, 2026 | 2.68% (0.02678) | 83.80th | v5 (v2026.06.15) |
| Mar 30, 2025 | 4.78% (0.04783) | 88.45th | v4 (v2025.03.14) |
| Mar 29, 2025 | 10.58% (0.10579) | 88.71th | v4 (v2025.03.14) |
| Mar 17, 2025 | 4.78% (0.04783) | 88.73th | v4 (v2025.03.14) |
| Dec 12, 2024 | 1.86% (0.01859) | 88.85th | v3 (v2023.03.01) |
| Sep 18, 2024 | 1.86% (0.01859) | 88.62th | v3 (v2023.03.01) |
| Jul 4, 2024 | 0.67% (0.00670) | 79.90th | v3 (v2023.03.01) |
| May 27, 2024 | 0.63% (0.00629) | 78.99th | v3 (v2023.03.01) |
| Mar 11, 2024 | 0.66% (0.00665) | 79.15th | v3 (v2023.03.01) |
| Feb 2, 2024 | 0.75% (0.00752) | 79.08th | v3 (v2023.03.01) |
| Nov 20, 2023 | 0.82% (0.00817) | 79.87th | v3 (v2023.03.01) |
| Oct 14, 2023 | 0.85% (0.00851) | 80.30th | v3 (v2023.03.01) |
| Mar 7, 2023 | 0.79% (0.00786) | 78.70th | v3 (v2023.03.01) |
| Mar 6, 2023 | 3.93% (0.03932) | 85.88th | v2 (v2022.01.01) |
| Apr 1, 2022 | 3.93% (0.03932) | 84.43th | v2 (v2022.01.01) |
| Feb 4, 2022 | 3.93% (0.03932) | 67.70th | v2 (v2022.01.01) |
No CWE recorded.
References (38)
- http://crypto.stanford.edu/dns/dns-rebinding.pdf x_refsource_MISC
- http://dev2dev.bea.com/pub/advisory/272 vendor-advisoryx_refsource_BEA
- http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01234533 vendor-advisoryx_refsource_HP
- http://lists.opensuse.org/opensuse-security-announce/2008-04/msg00010.html vendor-advisoryx_refsource_SUSE
- http://secunia.com/advisories/27206 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://secunia.com/advisories/27261 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://secunia.com/advisories/27693 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://secunia.com/advisories/27716 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://secunia.com/advisories/27804 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://secunia.com/advisories/28777 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://secunia.com/advisories/28880 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://secunia.com/advisories/29042 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://secunia.com/advisories/29858 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://secunia.com/advisories/29897 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://secunia.com/advisories/30676 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://secunia.com/advisories/30780 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://security.gentoo.org/glsa/glsa-200804-28.xml vendor-advisoryx_refsource_GENTOO
- http://securitytracker.com/id?1018771 vdb-entryx_refsource_SECTRACK
- http://sunsolve.sun.com/search/document.do?assetkey=1-26-103078-1 vendor-advisoryx_refsource_SUNALERTVendor Advisory
- http://sunsolve.sun.com/search/document.do?assetkey=1-66-200041-1 vendor-advisoryx_refsource_SUNALERTVendor Advisory
- http://support.novell.com/techcenter/psdb/0c36b6416afc3868b8b1b9012955e323.html x_refsource_CONFIRM
- http://www.gentoo.org/security/en/glsa/glsa-200804-20.xml vendor-advisoryx_refsource_GENTOO
- http://www.gentoo.org/security/en/glsa/glsa-200806-11.xml vendor-advisoryx_refsource_GENTOO
- http://www.novell.com/linux/security/advisories/2007_55_java.html vendor-advisoryx_refsource_SUSE
- http://www.redhat.com/support/errata/RHSA-2007-0963.html vendor-advisoryx_refsource_REDHAT
- http://www.redhat.com/support/errata/RHSA-2007-1041.html vendor-advisoryx_refsource_REDHAT
- http://www.redhat.com/support/errata/RHSA-2008-0132.html vendor-advisoryx_refsource_REDHAT
- http://www.securityfocus.com/archive/1/482926/100/0/threaded mailing-listx_refsource_BUGTRAQ
- http://www.securityfocus.com/bid/25918 vdb-entryx_refsource_BID
- http://www.vmware.com/security/advisories/VMSA-2008-0010.html x_refsource_CONFIRM
- http://www.vupen.com/english/advisories/2007/3895 vdb-entryx_refsource_VUPENVendor Advisory
- http://www.vupen.com/english/advisories/2008/0609 vdb-entryx_refsource_VUPENVendor Advisory
- http://www.vupen.com/english/advisories/2008/1856/references vdb-entryx_refsource_VUPENVendor Advisory
- https://access.redhat.com/security/cve/CVE-2007-5274 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=324361 Issue Tracking
- https://nvd.nist.gov/vuln/detail/CVE-2007-5274
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10908 vdb-entrysignaturex_refsource_OVAL
- https://www.cve.org/CVERecord?id=CVE-2007-5274
Change history (0)
No recorded changes yet.