HIGH
JDK race condition vulnerability reflection checks
Published Aug 10, 2009
9.3
HIGHCVSS 2.0
EPSS 1.58%
Description
Race condition in the java.lang package in Sun Java SE 5.0 before Update 20 has unknown impact and attack vectors, related to a "3Y Race condition in reflection checks."
Affected products
No data.
No data.
Extras for RHEL 4
java-1.5.0-sun-0:1.5.0.20-1jpp.1.el4
Fixed · RHSA-2009:1199
Supplementary for Red Hat Enterprise Linux 5
java-1.5.0-sun-0:1.5.0.20-1jpp.1.el5
Fixed · RHSA-2009:1199
| Product | Package | State | Advisory |
|---|---|---|---|
| Extras for RHEL 4 | java-1.5.0-sun-0:1.5.0.20-1jpp.1.el4 | Fixed | RHSA-2009:1199 |
| Supplementary for Red Hat Enterprise Linux 5 | java-1.5.0-sun-0:1.5.0.20-1jpp.1.el5 | Fixed | RHSA-2009:1199 |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (13)
- http://java.sun.com/j2se/1.5.0/ReleaseNotes.html x_refsource_CONFIRMPatchVendor Advisory
- http://secunia.com/advisories/37386 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/37460 third-party-advisoryx_refsource_SECUNIA
- http://security.gentoo.org/glsa/glsa-200911-02.xml vendor-advisoryx_refsource_GENTOO
- http://sunsolve.sun.com/search/document.do?assetkey=1-21-118667-22-1 x_refsource_CONFIRMPatchVendor Advisory
- http://www.securityfocus.com/archive/1/507985/100/0/threaded mailing-listx_refsource_BUGTRAQ
- http://www.vmware.com/security/advisories/VMSA-2009-0016.html x_refsource_CONFIRM
- http://www.vupen.com/english/advisories/2009/3316 vdb-entryx_refsource_VUPEN
- https://access.redhat.com/security/cve/CVE-2009-2724 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=516834 Issue Tracking
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2009-2715 Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2009-2724
- https://www.cve.org/CVERecord?id=CVE-2009-2724
| Link | Providers | Tags |
|---|---|---|
| http://java.sun.com/j2se/1.5.0/ReleaseNotes.html | x_refsource_CONFIRMPatchVendor Advisory | |
| http://secunia.com/advisories/37386 | third-party-advisoryx_refsource_SECUNIA | |
| http://secunia.com/advisories/37460 | third-party-advisoryx_refsource_SECUNIA | |
| http://security.gentoo.org/glsa/glsa-200911-02.xml | vendor-advisoryx_refsource_GENTOO | |
| http://sunsolve.sun.com/search/document.do?assetkey=1-21-118667-22-1 | x_refsource_CONFIRMPatchVendor Advisory | |
| http://www.securityfocus.com/archive/1/507985/100/0/threaded | mailing-listx_refsource_BUGTRAQ | |
| http://www.vmware.com/security/advisories/VMSA-2009-0016.html | x_refsource_CONFIRM | |
| http://www.vupen.com/english/advisories/2009/3316 | vdb-entryx_refsource_VUPEN | |
| https://access.redhat.com/security/cve/CVE-2009-2724 | Vendor Advisory | |
| https://bugzilla.redhat.com/show_bug.cgi?id=516834 | Issue Tracking | |
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2009-2715 | Advisory | |
| https://nvd.nist.gov/vuln/detail/CVE-2009-2724 | ||
| https://www.cve.org/CVERecord?id=CVE-2009-2724 |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Aug 10, 2009
Updated Aug 7, 2024
Reserved Aug 10, 2009
Link CVE-2009-2724
CISA Vulnrichment
No data
GitHub
No data