CVE-2007-0243
published 2007-01-17CVE-2007-0243: Buffer overflow in Sun JDK and Java Runtime Environment (JRE) 5.0 Update 9 and earlier, SDK and JRE 1.4.2_12 and earlier, and SDK and JRE 1.3.1_18 and earlier…
PriorityP340medium6.8CVSS 2.0
AVNACMAuNCPIPAP
EXPLOIT
EPSS
10.99%
95.4th percentile
Buffer overflow in Sun JDK and Java Runtime Environment (JRE) 5.0 Update 9 and earlier, SDK and JRE 1.4.2_12 and earlier, and SDK and JRE 1.3.1_18 and earlier allows applets to gain privileges via a GIF image with a block with a 0 width field, which triggers memory corruption.
Affected
27 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| sun | jdk | <= 1.5.0 | — |
| sun | jdk | — | — |
| sun | jre | <= 1.3.1 | — |
| sun | jre | — | — |
| sun | jre | — | — |
| sun | jre | — | — |
| sun | jre | — | — |
| sun | jre | — | — |
| sun | jre | — | — |
| sun | jre | — | — |
| sun | jre | — | — |
| sun | jre | — | — |
| sun | jre | — | — |
| sun | jre | — | — |
| sun | jre | — | — |
| sun | jre | — | — |
| sun | jre | — | — |
| sun | sdk | — | — |
| sun | sdk | — | — |
| sun | sdk | — | — |
| sun | sdk | — | — |
| sun | sdk | — | — |
| sun | sdk | — | — |
| sun | sdk | — | — |
| sun | sdk | — | — |
CVSS provenance
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
vendor_redhat6.8MEDIUM
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-qj96-m693-9g56: Buffer overflow in Sun JDK and Java Runtime Environment (JRE) 5
ghsa_unreviewed·2022-05-01
CVE-2007-0243 [MEDIUM] CWE-119 GHSA-qj96-m693-9g56: Buffer overflow in Sun JDK and Java Runtime Environment (JRE) 5
Buffer overflow in Sun JDK and Java Runtime Environment (JRE) 5.0 Update 9 and earlier, SDK and JRE 1.4.2_12 and earlier, and SDK and JRE 1.3.1_18 and earlier allows applets to gain privileges via a GIF image with a block with a 0 width field, which triggers memory corruption.
Red Hat
java-jre: GIF buffer overflow
vendor_redhat·2007-01-17·CVSS 6.8
CVE-2007-0243 [MEDIUM] java-jre: GIF buffer overflow
java-jre: GIF buffer overflow
Buffer overflow in Sun JDK and Java Runtime Environment (JRE) 5.0 Update 9 and earlier, SDK and JRE 1.4.2_12 and earlier, and SDK and JRE 1.3.1_18 and earlier allows applets to gain privileges via a GIF image with a block with a 0 width field, which triggers memory corruption.
No detection rules found.
Bugzilla
CVE-2007-0243 java-jre: GIF buffer overflow
bugzilla·2007-10-10·CVSS 6.8
CVE-2007-0243 [MEDIUM] CVE-2007-0243 java-jre: GIF buffer overflow
CVE-2007-0243 java-jre: GIF buffer overflow
In January 2007 a flaw was found affecting the SUN JRE; "Buffer overflow in Sun
JDK and Java Runtime Environment (JRE) 5.0 Update 9 and earlier, SDK and JRE
1.4.2_12 and earlier, and SDK and JRE 1.3.1_18 and earlier allows applets to
gain privileges via a GIF image with a block with a 0 width field, which
triggers memory corruption."
Discussion:
The list of fixed products with their respective errata is here:
https://access.redhat.com/security/cve/CVE-2007-0243
Bugzilla
CVE-2007-0243 GIF buffer overflow
bugzilla·2007-04-20·CVSS 6.8
CVE-2007-0243 [MEDIUM] CVE-2007-0243 GIF buffer overflow
CVE-2007-0243 GIF buffer overflow
+++ This bug was initially created as a clone of Bug #236894 +++
In January 2007 a flaw was found affecting the SUN JRE; "Buffer overflow in Sun
JDK and Java Runtime Environment (JRE) 5.0 Update 9 and earlier, SDK and JRE
1.4.2_12 and earlier, and SDK and JRE 1.3.1_18 and earlier allows applets to
gain privileges via a GIF image with a block with a 0 width field, which
triggers memory corruption."
On 17th April 2007 IBM updated their alerts page to note that this issue
affected the IBM JRE and was fixed in 1.5.0SR4
Also affects RHEL4Extras
-- Additional comment from [email protected] on 2007-04-18 13:58 EST --
I've requested updated tarballs from my IBM contact. I'll see if I can get what
I need from the public IBM site in the mean time.
Discussion
Bugzilla
CVE-2007-0243 GIF buffer overflow
bugzilla·2007-04-20·CVSS 6.8
CVE-2007-0243 [MEDIUM] CVE-2007-0243 GIF buffer overflow
CVE-2007-0243 GIF buffer overflow
+++ This bug was initially created as a clone of Bug #236892 +++
In January 2007 a flaw was found affecting the SUN JRE; "Buffer overflow in Sun
JDK and Java Runtime Environment (JRE) 5.0 Update 9 and earlier, SDK and JRE
1.4.2_12 and earlier, and SDK and JRE 1.3.1_18 and earlier allows applets to
gain privileges via a GIF image with a block with a 0 width field, which
triggers memory corruption."
On 17th April 2007 IBM updated their alerts page to note that this issue
affected the IBM JRE and was fixed in 1.4.2 SR8
Also affects RHEL4Extras, RHEL3Extras
-- Additional comment from [email protected] on 2007-04-18 13:58 EST --
I've requested updated tarballs from my IBM contact. I'll see if I can get what
I need from the public IBM site in the mean time
Bugzilla
CVE-2007-0243 GIF buffer overflow
bugzilla·2007-04-20·CVSS 6.8
CVE-2007-0243 [MEDIUM] CVE-2007-0243 GIF buffer overflow
CVE-2007-0243 GIF buffer overflow
+++ This bug was initially created as a clone of Bug #236894 +++
In January 2007 a flaw was found affecting the SUN JRE; "Buffer overflow in Sun
JDK and Java Runtime Environment (JRE) 5.0 Update 9 and earlier, SDK and JRE
1.4.2_12 and earlier, and SDK and JRE 1.3.1_18 and earlier allows applets to
gain privileges via a GIF image with a block with a 0 width field, which
triggers memory corruption."
On 17th April 2007 IBM updated their alerts page to note that this issue
affected the IBM JRE and was fixed in 1.5.0SR4
Also affects RHEL4Extras
-- Additional comment from [email protected] on 2007-04-18 13:58 EST --
I've requested updated tarballs from my IBM contact. I'll see if I can get what
I need from the public IBM site in the mean time.
Bugzilla
CVE-2007-0243 GIF buffer overflow
bugzilla·2007-04-18·CVSS 6.8
CVE-2007-0243 [MEDIUM] CVE-2007-0243 GIF buffer overflow
CVE-2007-0243 GIF buffer overflow
In January 2007 a flaw was found affecting the SUN JRE; "Buffer overflow in Sun
JDK and Java Runtime Environment (JRE) 5.0 Update 9 and earlier, SDK and JRE
1.4.2_12 and earlier, and SDK and JRE 1.3.1_18 and earlier allows applets to
gain privileges via a GIF image with a block with a 0 width field, which
triggers memory corruption."
On 17th April 2007 IBM updated their alerts page to note that this issue
affected the IBM JRE and was fixed in 1.5.0SR4
Also affects RHEL4Extras
Discussion:
I've requested updated tarballs from my IBM contact. I'll see if I can get what
I need from the public IBM site in the mean time.
---
An advisory has been issued which should help the problem
described in this bug report. This report is therefore being
closed with a
Bugzilla
CVE-2007-0243 GIF buffer overflow
bugzilla·2007-04-18·CVSS 6.8
CVE-2007-0243 [MEDIUM] CVE-2007-0243 GIF buffer overflow
CVE-2007-0243 GIF buffer overflow
+++ This bug was initially created as a clone of Bug #236892 +++
In January 2007 a flaw was found affecting the SUN JRE; "Buffer overflow in Sun
JDK and Java Runtime Environment (JRE) 5.0 Update 9 and earlier, SDK and JRE
1.4.2_12 and earlier, and SDK and JRE 1.3.1_18 and earlier allows applets to
gain privileges via a GIF image with a block with a 0 width field, which
triggers memory corruption."
On 17th April 2007 IBM updated their alerts page to note that this issue
affected the IBM JRE and was fixed in 1.4.2 SR8
Also affects RHEL4Extras, RHEL3Extras
Discussion:
We shipped IBM JRE version 1.3.1 with RHEL2.1; note that the IBM page
http://www-128.ibm.com/developerworks/java/jdk/alerts/ states that there is no
1.3.1 update, but "1.3.1 iFixes are ava
Bugzilla
CVE-2007-0243 GIF buffer overflow
bugzilla·2007-04-18·CVSS 6.8
CVE-2007-0243 [MEDIUM] CVE-2007-0243 GIF buffer overflow
CVE-2007-0243 GIF buffer overflow
In January 2007 a flaw was found affecting the SUN JRE; "Buffer overflow in Sun
JDK and Java Runtime Environment (JRE) 5.0 Update 9 and earlier, SDK and JRE
1.4.2_12 and earlier, and SDK and JRE 1.3.1_18 and earlier allows applets to
gain privileges via a GIF image with a block with a 0 width field, which
triggers memory corruption."
On 17th April 2007 IBM updated their alerts page to note that this issue
affected the IBM JRE and was fixed in 1.4.2 SR8
Also affects RHEL4Extras, RHEL3Extras
Discussion:
We're going to label this with impact=critical rather than important and we were
not able to prove this issue could not allow a malicious applet the ability to
run arbitrary code. This issue was reported by IBM as affecting IBM Java on
20070417.
---
An
http://dev2dev.bea.com/pub/advisory/242http://docs.info.apple.com/article.html?artnum=307177http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?lang=en&cc=us&objectID=c00876579http://lists.apple.com/archives/Security-announce/2007/Dec/msg00001.htmlhttp://osvdb.org/32834http://secunia.com/advisories/23757http://secunia.com/advisories/24189http://secunia.com/advisories/24202http://secunia.com/advisories/24468http://secunia.com/advisories/24993http://secunia.com/advisories/25283http://secunia.com/advisories/26049http://secunia.com/advisories/26119http://secunia.com/advisories/26645http://secunia.com/advisories/27203http://secunia.com/advisories/28115http://security.gentoo.org/glsa/glsa-200702-08.xmlhttp://securityreason.com/securityalert/2158http://securitytracker.com/id?1017520http://sunsolve.sun.com/search/document.do?assetkey=1-26-102760-1http://support.novell.com/techcenter/psdb/4f850d1e2b871db609de64ec70f0089c.htmlhttp://support.novell.com/techcenter/psdb/d2f549cc040cd81ae4a268bb5edfe918.htmlhttp://www.gentoo.org/security/en/glsa/glsa-200702-07.xmlhttp://www.kb.cert.org/vuls/id/388289http://www.novell.com/linux/security/advisories/2007_45_java.htmlhttp://www.redhat.com/support/errata/RHSA-2007-0166.htmlhttp://www.redhat.com/support/errata/RHSA-2007-0167.htmlhttp://www.redhat.com/support/errata/RHSA-2007-0956.htmlhttp://www.redhat.com/support/errata/RHSA-2008-0261.htmlhttp://www.securityfocus.com/archive/1/457159/100/0/threadedhttp://www.securityfocus.com/archive/1/457638/100/0/threadedhttp://www.securityfocus.com/bid/22085http://www.us-cert.gov/cas/techalerts/TA07-022A.htmlhttp://www.vupen.com/english/advisories/2007/0211http://www.vupen.com/english/advisories/2007/0936http://www.vupen.com/english/advisories/2007/1814http://www.vupen.com/english/advisories/2007/4224http://www.zerodayinitiative.com/advisories/ZDI-07-005.htmlhttps://exchange.xforce.ibmcloud.com/vulnerabilities/31537https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11073http://dev2dev.bea.com/pub/advisory/242http://docs.info.apple.com/article.html?artnum=307177http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?lang=en&cc=us&objectID=c00876579http://lists.apple.com/archives/Security-announce/2007/Dec/msg00001.htmlhttp://osvdb.org/32834http://secunia.com/advisories/23757http://secunia.com/advisories/24189http://secunia.com/advisories/24202http://secunia.com/advisories/24468http://secunia.com/advisories/24993http://secunia.com/advisories/25283http://secunia.com/advisories/26049http://secunia.com/advisories/26119http://secunia.com/advisories/26645http://secunia.com/advisories/27203http://secunia.com/advisories/28115http://security.gentoo.org/glsa/glsa-200702-08.xmlhttp://securityreason.com/securityalert/2158http://securitytracker.com/id?1017520http://sunsolve.sun.com/search/document.do?assetkey=1-26-102760-1http://support.novell.com/techcenter/psdb/4f850d1e2b871db609de64ec70f0089c.htmlhttp://support.novell.com/techcenter/psdb/d2f549cc040cd81ae4a268bb5edfe918.htmlhttp://www.gentoo.org/security/en/glsa/glsa-200702-07.xmlhttp://www.kb.cert.org/vuls/id/388289http://www.novell.com/linux/security/advisories/2007_45_java.htmlhttp://www.redhat.com/support/errata/RHSA-2007-0166.htmlhttp://www.redhat.com/support/errata/RHSA-2007-0167.htmlhttp://www.redhat.com/support/errata/RHSA-2007-0956.htmlhttp://www.redhat.com/support/errata/RHSA-2008-0261.htmlhttp://www.securityfocus.com/archive/1/457159/100/0/threadedhttp://www.securityfocus.com/archive/1/457638/100/0/threadedhttp://www.securityfocus.com/bid/22085http://www.us-cert.gov/cas/techalerts/TA07-022A.htmlhttp://www.vupen.com/english/advisories/2007/0211http://www.vupen.com/english/advisories/2007/0936http://www.vupen.com/english/advisories/2007/1814http://www.vupen.com/english/advisories/2007/4224http://www.zerodayinitiative.com/advisories/ZDI-07-005.htmlhttps://exchange.xforce.ibmcloud.com/vulnerabilities/31537https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11073
2007-01-17
Published