CVE
- Id
- 41312
- CVE No.
- CVE-2009-3877
- Status
- Candidate
- Description
- Unspecified vulnerability in Sun Java SE in JDK and JRE 5.0 before Update 22, JDK and JRE 6 before Update 17, SDK and JRE 1.3.x before 1.3.1_27, and SDK and JRE 1.4.x before 1.4.2_24 allows remote attackers to cause a denial of service (memory consumption) via crafted HTTP headers, which are not properly parsed by the ASN.1 DER input stream parser, aka Bug Id 6864911.
- Phase
- Assigned (20091105)
- Votes
- None (candidate not yet proposed)
- Comments
Related CVE References
Id | CVE Id | CVE No. | Reference | Actions |
---|---|---|---|---|
453514 | 41312 | CVE-2009-3877 | CONFIRM:http://java.sun.com/javase/6/webnotes/6u17.html | View |
453515 | 41312 | CVE-2009-3877 | CONFIRM:http://support.apple.com/kb/HT3969 | View |
453516 | 41312 | CVE-2009-3877 | CONFIRM:http://support.apple.com/kb/HT3970 | View |
453517 | 41312 | CVE-2009-3877 | CONFIRM:http://www.oracle.com/technetwork/topics/security/cpujan2010-084891.html | View |
453518 | 41312 | CVE-2009-3877 | APPLE:APPLE-SA-2009-12-03-1 | View |
453519 | 41312 | CVE-2009-3877 | URL:http://lists.apple.com/archives/security-announce/2009/Dec/msg00000.html | View |
453520 | 41312 | CVE-2009-3877 | APPLE:APPLE-SA-2009-12-03-2 | View |
453521 | 41312 | CVE-2009-3877 | URL:http://lists.apple.com/archives/security-announce/2009/Dec/msg00001.html | View |
453522 | 41312 | CVE-2009-3877 | GENTOO:GLSA-200911-02 | View |
453523 | 41312 | CVE-2009-3877 | URL:http://security.gentoo.org/glsa/glsa-200911-02.xml | View |
453524 | 41312 | CVE-2009-3877 | HP:HPSBMU02703 | View |
453525 | 41312 | CVE-2009-3877 | URL:http://marc.info/?l=bugtraq&m=131593453929393&w=2 | View |
453526 | 41312 | CVE-2009-3877 | HP:SSRT100242 | View |
453527 | 41312 | CVE-2009-3877 | URL:http://marc.info/?l=bugtraq&m=131593453929393&w=2 | View |
453528 | 41312 | CVE-2009-3877 | HP:HPSBUX02503 | View |
453529 | 41312 | CVE-2009-3877 | URL:http://marc.info/?l=bugtraq&m=126566824131534&w=2 | View |
453530 | 41312 | CVE-2009-3877 | HP:SSRT100019 | View |
453531 | 41312 | CVE-2009-3877 | URL:http://marc.info/?l=bugtraq&m=126566824131534&w=2 | View |
453532 | 41312 | CVE-2009-3877 | MANDRIVA:MDVSA-2010:084 | View |
453533 | 41312 | CVE-2009-3877 | URL:http://www.mandriva.com/security/advisories?name=MDVSA-2010:084 | View |
453534 | 41312 | CVE-2009-3877 | REDHAT:RHSA-2009:1694 | View |
453535 | 41312 | CVE-2009-3877 | URL:http://www.redhat.com/support/errata/RHSA-2009-1694.html | View |
453536 | 41312 | CVE-2009-3877 | SUNALERT:270476 | View |
453537 | 41312 | CVE-2009-3877 | URL:http://sunsolve.sun.com/search/document.do?assetkey=1-66-270476-1 | View |
453538 | 41312 | CVE-2009-3877 | SUSE:SUSE-SA:2009:058 | View |
453539 | 41312 | CVE-2009-3877 | URL:http://lists.opensuse.org/opensuse-security-announce/2009-11/msg00010.html | View |
453540 | 41312 | CVE-2009-3877 | BID:36881 | View |
453541 | 41312 | CVE-2009-3877 | URL:http://www.securityfocus.com/bid/36881 | View |
453542 | 41312 | CVE-2009-3877 | OVAL:oval:org.mitre.oval:def:10469 | View |
453543 | 41312 | CVE-2009-3877 | URL:http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:10469 | View |
453544 | 41312 | CVE-2009-3877 | OVAL:oval:org.mitre.oval:def:7148 | View |
453545 | 41312 | CVE-2009-3877 | URL:http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:7148 | View |
453546 | 41312 | CVE-2009-3877 | OVAL:oval:org.mitre.oval:def:8330 | View |
453547 | 41312 | CVE-2009-3877 | URL:http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8330 | View |
453548 | 41312 | CVE-2009-3877 | OVAL:oval:org.mitre.oval:def:12232 | View |
453549 | 41312 | CVE-2009-3877 | URL:http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:12232 | View |
453550 | 41312 | CVE-2009-3877 | SECUNIA:37231 | View |
453551 | 41312 | CVE-2009-3877 | URL:http://secunia.com/advisories/37231 | View |
453552 | 41312 | CVE-2009-3877 | SECUNIA:37239 | View |
453553 | 41312 | CVE-2009-3877 | URL:http://secunia.com/advisories/37239 | View |
453554 | 41312 | CVE-2009-3877 | SECUNIA:37386 | View |
453555 | 41312 | CVE-2009-3877 | URL:http://secunia.com/advisories/37386 | View |
453556 | 41312 | CVE-2009-3877 | SECUNIA:37581 | View |
453557 | 41312 | CVE-2009-3877 | URL:http://secunia.com/advisories/37581 | View |
453558 | 41312 | CVE-2009-3877 | SECUNIA:37841 | View |
453559 | 41312 | CVE-2009-3877 | URL:http://secunia.com/advisories/37841 | View |
453560 | 41312 | CVE-2009-3877 | VUPEN:ADV-2009-3131 | View |
Related JVN
Id | JVN No. | Title | Summary | CVE No. | CVE Id | CVSS_v2 | CVSS_v3 | JVN URL | Actions |
---|---|---|---|---|---|---|---|---|---|
41344 | JVNDB-2009-002351 | Sun Java SE および OpenJDK における権限を取得される脆弱性 | Sun Java SE および OpenJDK には、復活した ClassLoader の子が存在することを防止しないため、権限を取得される、または重要な情報が漏えいする脆弱性が存在します。 | CVE-2009-3881 | 41312 | 7.5 | http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-002351.html | View |