CVE-2009-3729JRE vulnerability

5 documents5 sources
Severity
5.0MEDIUMNVD
EPSS
1.6%
top 18.37%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedNov 9
Latest updateMay 2

Description

Unspecified vulnerability in the TrueType font parsing functionality in Sun Java SE 5.0 before Update 22 and 6 before Update 17 allows remote attackers to cause a denial of service (application crash) via a certain test suite, aka Bug Id 6815780.

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9

Affected Packages1 packages

NVDsun/jre1.5.0+3

🔴Vulnerability Details

2
GHSA
GHSA-qghh-4hvq-fj66: Unspecified vulnerability in the TrueType font parsing functionality in Sun Java SE 52022-05-02
CVEList
CVE-2009-3729: Unspecified vulnerability in the TrueType font parsing functionality in Sun Java SE 52009-11-09

📋Vendor Advisories

1
Red Hat
JRE TrueType font parsing crash (6815780)2009-11-03

💬Community

1
Bugzilla
CVE-2009-3729 JRE TrueType font parsing crash (6815780)2009-11-04
CVE-2009-3729 — SUN JRE vulnerability | cvebase