CVE-2003-1301
Sun Java Runtime Environment (JRE) 1.x before 1.4.2_11 and 1.5.x before 1.5.0_06, and as used in multiple web browsers, allows remote attackers to cause a denial of service (application crash) via deeply nested object arrays, which are not properly handled by the garbage collector and trigger invalid memory accesses.
- Affected products
- Sun Java Runtime Environment
- Sun Jre
- = 1.4.2, 1.4.2_1, 1.4.2_2, 1.4.2_3, 1.4.2_4, 1.4.2_5, 1.4.2_6, 1.4.2_7, 1.4.2_8, 1.4.2_9, 1.4.2_10, 1.5.0
- Fix
- Available
- CVSS 2.0
- 5.0 MEDIUM
- EPSS
- 2.5% (83th percentile)
- NVD status
- Modified
- Published
- 2006-05-26
CVE-2003-1301 at NVD
No indexed exploits for CVE-2003-1301 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2003-1301 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.