~ubuntu-security/ubuntu-cve-tracker/master

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
PublicDateAtUSN: 2010-04-01
Candidate: CVE-2010-0838
PublicDate: 2010-04-01
References:
 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0838
 http://www.oracle.com/technology/deploy/security/critical-patch-updates/javacpumar2010.html
 http://www.ubuntu.com/usn/usn-923-1
Description:
 Unspecified vulnerability in the Java 2D component in Oracle Java SE and
 Java for Business 6 Update 18, 5.0, Update, and 23 allows remote attackers
 to affect confidentiality, integrity, and availability via unknown vectors.
  NOTE: the previous information was obtained from the March 2010 CPU.
 Oracle has not commented on claims from a reliable researcher that this is
 a stack-based buffer overflow using an untrusted size value in the
 readMabCurveData function in the CMM module in the JVM.
Ubuntu-Description:
Notes:
Bugs:
Priority: medium
Discovered-by:
Assigned-to:

Patches_sun-java6:
upstream_sun-java6: released (6.19)
dapper_sun-java6: DNE
hardy_sun-java6: released (6.20dlj-0ubuntu1.8.04)
intrepid_sun-java6: needs-triage (reached end-of-life)
jaunty_sun-java6: released (6.20dlj-0ubuntu1.9.04)
karmic_sun-java6: released (6.20dlj-0ubuntu1.9.10)
lucid_sun-java6: not-affected (6.19-0ubuntu1)
maverick_sun-java6: not-affected
natty_sun-java6: not-affected
devel_sun-java6: not-affected

Patches_sun-java5:
upstream_sun-java5: released (1.5.0-24)
dapper_sun-java5: ignored (reached end-of-life)
hardy_sun-java5: ignored (upstream sun-java5 is EoL)
intrepid_sun-java5: needed (reached end-of-life)
jaunty_sun-java5: ignored (reached end-of-life)
karmic_sun-java5: DNE
lucid_sun-java5: DNE
maverick_sun-java5: DNE
natty_sun-java5: DNE
devel_sun-java5: DNE

Patches_openjdk-6:
upstream_openjdk-6: needs-triage
dapper_openjdk-6: DNE
hardy_openjdk-6: released (6b11-2ubuntu2.2)
intrepid_openjdk-6: released (6b12-0ubuntu6.7)
jaunty_openjdk-6: released (6b14-1.4.1-0ubuntu13)
karmic_openjdk-6: released (6b16-1.6.1-3ubuntu3)
lucid_openjdk-6: not-affected (6b18~pre4-0ubuntu1)
maverick_openjdk-6: not-affected (6b18~pre4-0ubuntu1)
natty_openjdk-6: not-affected (6b18~pre4-0ubuntu1)
devel_openjdk-6: not-affected (6b18~pre4-0ubuntu1)