Description
Sun Java SE in JDK and JRE 5.0 before Update 22, JDK and JRE 6 before Update 17, SDK and JRE 1.3.x before 1.3.1_27, and SDK and JRE 1.4.x before 1.4.2_24 does not properly parse color profiles, which allows remote attackers to gain privileges via a crafted image file, aka Bug Id 6862970.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-07T06:45:50.331Z
Reserved: 2009-11-05T00:00:00.000Z
Link: CVE-2009-3868
No data.
Status : Modified
Published: 2009-11-05T16:30:00.360
Modified: 2026-04-23T00:35:47.467
Link: CVE-2009-3868
OpenCVE Enrichment
No data.
Weaknesses