← All CVEs

CVE-2007-0243

medium · 6.8

Buffer overflow in Sun JDK and Java Runtime Environment (JRE) 5.0 Update 9 and earlier, SDK and JRE 1.4.2_12 and earlier, and SDK and JRE 1.3.1_18 and earlier allows applets to gain privileges via a GIF image with a block with a 0 width field, which triggers memory corruption.

6.8
CVSS
11.3%
EPSS (exploit prob.)
96th
EPSS percentile
2007-01-17
Published

AV:N/AC:M/Au:N/C:P/I:P/A:P

Weaknesses

CWE-119

Affected products

VendorProductAffected versions
sunjdk<= 1.5.0
sunjdk1.5.0
sunjdk1.5.0
sunjdk1.5.0
sunjdk1.5.0
sunjdk1.5.0
sunjre<= 1.3.1
sunjre1.3.1
sunjre1.4.2_1
sunjre1.4.2_2
sunjre1.4.2_3
sunjre1.4.2_4
sunjre1.4.2_5
sunjre1.4.2_6
sunjre1.4.2_7
sunjre1.4.2_8
sunjre1.4.2_9
sunjre1.4.2_10
sunjre1.4.2_11
sunjre1.4.2_12
sunjre1.5.0
sunjre1.5.0
sunjre1.5.0
sunjre1.5.0
sunjre1.5.0
sunjre1.5.0
sunjre1.5.0
sunsdk1.3.1_01
sunsdk1.3.1_01a
sunsdk1.3.1_16
sunsdk1.3.1_18
sunsdk1.4.2
sunsdk1.4.2_03
sunsdk1.4.2_08
sunsdk1.4.2_09
sunsdk1.4.2_10
sunsdk1.4.2_12

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2007-0243