CVE-2008-5348
Unspecified vulnerability in Java Runtime Environment (JRE) for Sun JDK and JRE 6 Update 10 and earlier; JDK and JRE 5.0 Update 16 and earlier; and SDK and JRE 1.4.2_18 and earlier, when using Kerberos authentication, allows remote attackers to cause a denial of service (OS resource consumption) via unknown vectors.
- Affected products
- Hp-Ux, Java Platform, Java Runtime Environment
- Sun Jdk
- ≤ 5.0, 6
- Sun Jre
- ≤ 1.4.2_18, 5.0, 6, 1.4.2_1, 1.4.2_2, 1.4.2_3, 1.4.2_4, 1.4.2_5, 1.4.2_6, 1.4.2_7, 1.4.2_8, 1.4.2_9, 1.4.2_10, 1.4.2_11, 1.4.2_12, 1.4.2_13, 1.4.2_14, 1.4.2_15, 1.4.2_16, 1.4.2_17
- Sun Sdk
- ≤ 1.4.2_18, 1.4.2_1, 1.4.2_2, 1.4.2_3, 1.4.2_4, 1.4.2_5, 1.4.2_6, 1.4.2_7, 1.4.2_8, 1.4.2_9, 1.4.2_10, 1.4.2_11, 1.4.2_12, 1.4.2_13, 1.4.2_14, 1.4.2_15, 1.4.2_16, 1.4.2_17
- Fix
- Available
- CVSS 2.0
- 7.1 HIGH
- EPSS
- 4.3% (90th percentile)
- NVD status
- Modified
- Published
- 2008-12-05
CVE-2008-5348 at NVD
1 known exploit for CVE-2008-5348
Proof-of-concept code and exploit modules indexed by Sploitus