oss-sec mailing list archives

Re: CVE request: Java webstart remote code execution


From: "Steven M. Christey" <coley () linus mitre org>
Date: Thu, 15 Apr 2010 16:40:53 -0400 (EDT)


On Mon, 12 Apr 2010, Josh Bressers wrote:

http://www.reversemode.com/index.php?option=com_content&task=view&id=67&Itemid=1

[0DAY] JAVA Web Start Arbitrary command-line injection - "-XXaltjvm"
arbitrary dll loading

Use CVE-2010-1423, to be filled in later.

- Steve


Current thread: