cbcvebase.

Debian Icedtea-Web vulnerabilities

14 known vulnerabilities affecting debian/icedtea-web.

Total CVEs
14
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH4MEDIUM9LOW1

Vulnerabilities

Page 1 of 1
CVE-2019-10185P3HIGHCVSS 8.6fixed in icedtea-web 1.8.3-1 (bookworm)2019
CVE-2019-10185 [HIGH] CVE-2019-10185: icedtea-web - It was found that icedtea-web up to and including 1.7.2 and 1.8.2 was vulnerable... It was found that icedtea-web up to and including 1.7.2 and 1.8.2 was vulnerable to a zip-slip attack during auto-extraction of a JAR file. An attacker could use this flaw to write files to arbitrary locations. This could also be used to replace the main running application and, possibly, break out of the sandbox. Scope: local bookworm: resolved (fixed in 1.8.3-
debian
CVE-2012-3423P3HIGHCVSS 7.5fixed in icedtea-web 1.3-1 (bookworm)2012
CVE-2012-3423 [HIGH] CVE-2012-3423: icedtea-web - The IcedTea-Web plugin before 1.2.1 does not properly handle NPVariant NPStrings... The IcedTea-Web plugin before 1.2.1 does not properly handle NPVariant NPStrings without NUL terminators, which allows remote attackers to cause a denial of service (crash), obtain sensitive information from memory, or execute arbitrary code via a crafted Java applet. Scope: local bookworm: resolved (fixed in 1.3-1) bullseye: resolved (fixed in 1.3-1) forky: resol
debian
CVE-2019-10181P3HIGHCVSS 8.1fixed in icedtea-web 1.8.3-1 (bookworm)2019
CVE-2019-10181 [HIGH] CVE-2019-10181: icedtea-web - It was found that in icedtea-web up to and including 1.7.2 and 1.8.2 executable ... It was found that in icedtea-web up to and including 1.7.2 and 1.8.2 executable code could be injected in a JAR file without compromising the signature verification. An attacker could use this flaw to inject code in a trusted JAR. The code would be executed inside the sandbox. Scope: local bookworm: resolved (fixed in 1.8.3-1) bullseye: resolved (fixed in 1.8.3-
debian
CVE-2013-1927P3MEDIUMCVSS 6.8fixed in icedtea-web 1.3.2-1 (bookworm)2013
CVE-2013-1927 [MEDIUM] CVE-2013-1927: icedtea-web - The IcedTea-Web plugin before 1.2.3 and 1.3.x before 1.3.2 allows remote attacke... The IcedTea-Web plugin before 1.2.3 and 1.3.x before 1.3.2 allows remote attackers to execute arbitrary code via a crafted file that validates as both a GIF and a Java JAR file, aka "GIFAR." Scope: local bookworm: resolved (fixed in 1.3.2-1) bullseye: resolved (fixed in 1.3.2-1) forky: resolved (fixed in 1.3.2-1) sid: resolved (fixed in 1.3.2-1) trixie: resolved
debian
CVE-2019-10182P3HIGHCVSS 8.2fixed in icedtea-web 1.8.3-1 (bookworm)2019
CVE-2019-10182 [HIGH] CVE-2019-10182: icedtea-web - It was found that icedtea-web though 1.7.2 and 1.8.2 did not properly sanitize p... It was found that icedtea-web though 1.7.2 and 1.8.2 did not properly sanitize paths from elements in JNLP files. An attacker could trick a victim into running a specially crafted application and use this flaw to upload arbitrary files to arbitrary locations in the context of the user. Scope: local bookworm: resolved (fixed in 1.8.3-1) bullseye: resolved (fixed
debian
CVE-2012-4540P4MEDIUMCVSS 6.8fixed in icedtea-web 1.3.1-1 (bookworm)2012
CVE-2012-4540 [MEDIUM] CVE-2012-4540: icedtea-web - Off-by-one error in the invoke function in IcedTeaScriptablePluginObject.cc in I... Off-by-one error in the invoke function in IcedTeaScriptablePluginObject.cc in IcedTea-Web 1.1.x before 1.1.7, 1.2.x before 1.2.2, 1.3.x before 1.3.1, and 1.4.x before 1.4.1 allows remote attackers to obtain sensitive information, cause a denial of service (crash), or possibly execute arbitrary code via a crafted webpage that triggers a heap-based buffer overflo
debian
CVE-2012-3422P4MEDIUMCVSS 6.8fixed in icedtea-web 1.3-1 (bookworm)2012
CVE-2012-3422 [MEDIUM] CVE-2012-3422: icedtea-web - The getFirstInTableInstance function in the IcedTea-Web plugin before 1.2.1 retu... The getFirstInTableInstance function in the IcedTea-Web plugin before 1.2.1 returns an uninitialized pointer when the instance_to_id_map hash is empty, which allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted web page, which causes an uninitialized memory location to be read. Scope: local bookworm: reso
debian
CVE-2011-2514P4MEDIUMCVSS 6.8fixed in icedtea-web 1.1-1 (bookworm)2011
CVE-2011-2514 [MEDIUM] CVE-2011-2514: icedtea-web - The Java Network Launching Protocol (JNLP) implementation in IcedTea6 1.9.x befo... The Java Network Launching Protocol (JNLP) implementation in IcedTea6 1.9.x before 1.9.9 and before 1.8.9, and IcedTea-Web 1.1.x before 1.1.1 and before 1.0.4, allows remote attackers to trick victims into granting access to local files by modifying the content of the Java Web Start Security Warning dialog box to represent a different filename than the file for
debian
CVE-2015-5234P4MEDIUMCVSS 6.8fixed in icedtea-web 1.6.1-1 (bookworm)2015
CVE-2015-5234 [MEDIUM] CVE-2015-5234: icedtea-web - IcedTea-Web before 1.5.3 and 1.6.x before 1.6.1 does not properly sanitize apple... IcedTea-Web before 1.5.3 and 1.6.x before 1.6.1 does not properly sanitize applet URLs, which allows remote attackers to inject applets into the .appletTrustSettings configuration file and bypass user approval to execute the applet via a crafted web page, possibly related to line breaks. Scope: local bookworm: resolved (fixed in 1.6.1-1) bullseye: resolved (fixe
debian
CVE-2011-3377P4MEDIUMCVSS 4.3fixed in icedtea-web 1.1.4-1 (bookworm)2011
CVE-2011-3377 [MEDIUM] CVE-2011-3377: icedtea-web - The web browser plug-in in IcedTea-Web 1.0.x before 1.0.6 and 1.1.x before 1.1.4... The web browser plug-in in IcedTea-Web 1.0.x before 1.0.6 and 1.1.x before 1.1.4 allows remote attackers to bypass the Same Origin Policy (SOP) and execute arbitrary script or establish network connections to unintended hosts via an applet whose origin has the same second-level domain, but a different sub-domain than the targeted domain. Scope: local bookworm: r
debian
CVE-2011-2513P4MEDIUMCVSS 5.0fixed in icedtea-web 1.1.2-1 (bookworm)2011
CVE-2011-2513 [MEDIUM] CVE-2011-2513: icedtea-web - The Java Network Launching Protocol (JNLP) implementation in IcedTea6 1.9.x befo... The Java Network Launching Protocol (JNLP) implementation in IcedTea6 1.9.x before 1.9.9 and before 1.8.9, and IcedTea-Web 1.1.x before 1.1.1 and before 1.0.4, allows remote attackers to obtain the username and full path of the home and cache directories by accessing properties of the ClassLoader. Scope: local bookworm: resolved (fixed in 1.1.2-1) bullseye: reso
debian
CVE-2013-1926P4MEDIUMCVSS 5.8fixed in icedtea-web 1.3.2-1 (bookworm)2013
CVE-2013-1926 [MEDIUM] CVE-2013-1926: icedtea-web - The IcedTea-Web plugin before 1.2.3 and 1.3.x before 1.3.2 uses the same class l... The IcedTea-Web plugin before 1.2.3 and 1.3.x before 1.3.2 uses the same class loader for applets with the same codebase path but from different domains, which allows remote attackers to obtain sensitive information or possibly alter other applets via a crafted applet. Scope: local bookworm: resolved (fixed in 1.3.2-1) bullseye: resolved (fixed in 1.3.2-1) forky
debian
CVE-2015-5235P4MEDIUMCVSS 4.3fixed in icedtea-web 1.6.1-1 (bookworm)2015
CVE-2015-5235 [MEDIUM] CVE-2015-5235: icedtea-web - IcedTea-Web before 1.5.3 and 1.6.x before 1.6.1 does not properly determine the ... IcedTea-Web before 1.5.3 and 1.6.x before 1.6.1 does not properly determine the origin of unsigned applets, which allows remote attackers to bypass the approval process or trick users into approving applet execution via a crafted web page. Scope: local bookworm: resolved (fixed in 1.6.1-1) bullseye: resolved (fixed in 1.6.1-1) forky: resolved (fixed in 1.6.1-1)
debian
CVE-2013-6493P4LOWCVSS 2.1fixed in icedtea-web 1.4.2-1 (bookworm)2013
CVE-2013-6493 [LOW] CVE-2013-6493: icedtea-web - The LiveConnect implementation in plugin/icedteanp/IcedTeaNPPlugin.cc in IcedTea... The LiveConnect implementation in plugin/icedteanp/IcedTeaNPPlugin.cc in IcedTea-Web before 1.4.2 allows local users to read the messages between a Java applet and a web browser by pre-creating a temporary socket file with a predictable name in /tmp. Scope: local bookworm: resolved (fixed in 1.4.2-1) bullseye: resolved (fixed in 1.4.2-1) forky: resolved (fixed in 1
debian
Debian Icedtea-Web vulnerabilities | cvebase