HIGH
Multiple buffer overflows in the Deployment Toolkit ActiveX control in deploytk.dll 6.0.130.3 in Sun Java SE Runtime Environment (aka JRE) 6 Update 13 allow remote attackers to execute arbitrary code via a long string argument to the (1) setInstallerType, (2) setAdditionalPackages, (3) compareVersion, (4) getStaticCLSID, or (5) launch method
Published May 18, 2009
9.3
HIGHCVSS 2.0
EPSS 10.34%
Description
Affected products
Remediation
Metrics
References (3)
Change history (0)
No recorded changes yet.