CVE-2009-1106
published 2009-03-25CVE-2009-1106: The Java Plug-in in Java SE Development Kit (JDK) and Java Runtime Environment (JRE) 6 Update 12, 11, and 10 does not properly parse crossdomain.xml files…
PriorityP336medium6.4CVSS 2.0
AVNACLAuNCNIPAP
EPSS
3.56%
88.0th percentile
The Java Plug-in in Java SE Development Kit (JDK) and Java Runtime Environment (JRE) 6 Update 12, 11, and 10 does not properly parse crossdomain.xml files, which allows remote attackers to bypass intended access restrictions and connect to arbitrary sites via unknown vectors, aka CR 6798948.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| sun | jdk | — | — |
| sun | jre | — | — |
| vmware | esxi | — | — |
| vmware | vmware_tools | — | — |
| vmware | vmware_vcenter_server | — | — |
| vmware | vmware_vsphere | — | — |
| vmware | vmware_workstation | — | — |
CVSS provenance
nvdv2.06.4MEDIUMAV:N/AC:L/Au:N/C:N/I:P/A:P
vendor_redhat6.4MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-wfxj-4rq5-wv9c: The Java Plug-in in Java SE Development Kit (JDK) and Java Runtime Environment (JRE) 6 Update 12, 11, and 10 does not properly parse crossdomain
ghsa_unreviewed·2022-05-02
CVE-2009-1106 [MEDIUM] CWE-20 GHSA-wfxj-4rq5-wv9c: The Java Plug-in in Java SE Development Kit (JDK) and Java Runtime Environment (JRE) 6 Update 12, 11, and 10 does not properly parse crossdomain
The Java Plug-in in Java SE Development Kit (JDK) and Java Runtime Environment (JRE) 6 Update 12, 11, and 10 does not properly parse crossdomain.xml files, which allows remote attackers to bypass intended access restrictions and connect to arbitrary sites via unknown vectors, aka CR 6798948.
VMware
VMware vCenter and ESX update release and vMA patch release address multiple security issues in third party components.
vendor_vmware·2009-11-20·CVSS 5.0
CVE-2007-2052 [MEDIUM] VMware vCenter and ESX update release and vMA patch release address multiple security issues in third party components.
VMSA-2009-0016: VMware vCenter and ESX update release and vMA patch release address multiple security issues in third party components.
a. JRE Security Update JRE update to version 1.5.0_20, which addresses multiple security issues that existed in earlier releases of JRE. The Common Vulnerabilities and Exposures project (cve.mitre.org) has assigned the following names to the security issues fixed in JRE 1.5.0_18: CVE-2009-1093, CVE-2009-1094, CVE-2009-1095, CVE-2009-1096, CVE-2009-1097, CVE-2009-1098, CVE-2009-1099, CVE-2009-1100, CVE-2009-1101, CVE-2009-1102, CVE-2009-1103, CVE-2009-1104, CVE-2009-1105, CVE-2009-1106, and CVE-2009-1107. The Common Vulnerabilities and Exposures project (cve.mitre.org) has assigned the following names to the security issues fixed in JRE 1.5.0_20: CVE-2009-
Red Hat
OpenJDK: Improper parsing of crossdomain.xml files (intended access restriction bypass) (6798948)
vendor_redhat·2009-03-23·CVSS 6.4
CVE-2009-1106 [MEDIUM] OpenJDK: Improper parsing of crossdomain.xml files (intended access restriction bypass) (6798948)
OpenJDK: Improper parsing of crossdomain.xml files (intended access restriction bypass) (6798948)
The Java Plug-in in Java SE Development Kit (JDK) and Java Runtime Environment (JRE) 6 Update 12, 11, and 10 does not properly parse crossdomain.xml files, which allows remote attackers to bypass intended access restrictions and connect to arbitrary sites via unknown vectors, aka CR 6798948.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2009-1192 kernel: agp: zero pages before sending to userspace
bugzilla·2009-04-22·CVSS 4.9
CVE-2009-1192 [MEDIUM] CVE-2009-1192 kernel: agp: zero pages before sending to userspace
CVE-2009-1192 kernel: agp: zero pages before sending to userspace
Description of problem:
AGP pages might be mapped into userspace finally, so the pages should be set to zero before userspace can use it. Otherwise there is potential information leakage.
Upstream patch:
http://git.kernel.org/linus/59de2bebabc5027f93df999d59cc65df591c3e6e
Discussion:
Created attachment 340668
Upstream patch
---
This fix for this was added to 2.6.29.3 and MRG-1.2 is based on 2.6.29.4 so this should not be an issue for MRG-1.2
---
This issue has been addressed in following products:
MRG for RHEL-5
Via RHSA-2009:1081 https://rhn.redhat.com/errata/RHSA-2009-1081.html
---
This issue has been addressed in following products:
Red Hat Enterprise Linux 5
Via RHSA-2009:1106 https://rhn.redhat.com/errata/
Bugzilla
CVE-2009-1106 OpenJDK: Improper parsing of crossdomain.xml files (intended access restriction bypass) (6798948)
bugzilla·2009-03-26·CVSS 6.4
CVE-2009-1106 [MEDIUM] CVE-2009-1106 OpenJDK: Improper parsing of crossdomain.xml files (intended access restriction bypass) (6798948)
CVE-2009-1106 OpenJDK: Improper parsing of crossdomain.xml files (intended access restriction bypass) (6798948)
Common Vulnerabilities and Exposures assigned an identifier CVE-2009-1106 to
the following vulnerability:
The Java Plug-in in Java SE Development Kit (JDK) and Java Runtime
Environment (JRE) 6 Update 12, 11, and 10 does not properly parse
crossdomain.xml files, which allows remote attackers to bypass
intended access restrictions and connect to arbitrary sites via
unknown vectors, aka CR 6798948.
References:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-1106
http://sunsolve.sun.com/search/document.do?assetkey=1-21-125137-14-1
http://sunsolve.sun.com/search/document.do?assetkey=1-66-254611-1
Discussion:
This issue has been addressed in following products:
Extras for
http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?lang=en&cc=us&objectID=c01745133http://lists.opensuse.org/opensuse-security-announce/2009-04/msg00001.htmlhttp://lists.opensuse.org/opensuse-security-announce/2009-07/msg00001.htmlhttp://marc.info/?l=bugtraq&m=124344236532162&w=2http://secunia.com/advisories/34496http://secunia.com/advisories/35156http://secunia.com/advisories/35255http://secunia.com/advisories/36185http://secunia.com/advisories/37386http://secunia.com/advisories/37460http://security.gentoo.org/glsa/glsa-200911-02.xmlhttp://sunsolve.sun.com/search/document.do?assetkey=1-21-125137-14-1http://sunsolve.sun.com/search/document.do?assetkey=1-66-254611-1http://support.avaya.com/elmodocs2/security/ASA-2009-108.htmhttp://www.redhat.com/support/errata/RHSA-2009-0392.htmlhttp://www.redhat.com/support/errata/RHSA-2009-1038.htmlhttp://www.securityfocus.com/archive/1/507985/100/0/threadedhttp://www.securityfocus.com/bid/34240http://www.securitytracker.com/id?1021920http://www.vmware.com/security/advisories/VMSA-2009-0016.htmlhttp://www.vupen.com/english/advisories/2009/1426http://www.vupen.com/english/advisories/2009/3316https://exchange.xforce.ibmcloud.com/vulnerabilities/49459https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6619https://rhn.redhat.com/errata/RHSA-2009-1198.htmlhttp://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?lang=en&cc=us&objectID=c01745133http://lists.opensuse.org/opensuse-security-announce/2009-04/msg00001.htmlhttp://lists.opensuse.org/opensuse-security-announce/2009-07/msg00001.htmlhttp://marc.info/?l=bugtraq&m=124344236532162&w=2http://secunia.com/advisories/34496http://secunia.com/advisories/35156http://secunia.com/advisories/35255http://secunia.com/advisories/36185http://secunia.com/advisories/37386http://secunia.com/advisories/37460http://security.gentoo.org/glsa/glsa-200911-02.xmlhttp://sunsolve.sun.com/search/document.do?assetkey=1-21-125137-14-1http://sunsolve.sun.com/search/document.do?assetkey=1-66-254611-1http://support.avaya.com/elmodocs2/security/ASA-2009-108.htmhttp://www.redhat.com/support/errata/RHSA-2009-0392.htmlhttp://www.redhat.com/support/errata/RHSA-2009-1038.htmlhttp://www.securityfocus.com/archive/1/507985/100/0/threadedhttp://www.securityfocus.com/bid/34240http://www.securitytracker.com/id?1021920http://www.vmware.com/security/advisories/VMSA-2009-0016.htmlhttp://www.vupen.com/english/advisories/2009/1426http://www.vupen.com/english/advisories/2009/3316https://exchange.xforce.ibmcloud.com/vulnerabilities/49459https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6619https://rhn.redhat.com/errata/RHSA-2009-1198.html
2009-03-25
Published