oss-sec mailing list archives

Re: CVE request: Java webstart remote code execution


From: Josh Bressers <bressers () redhat com>
Date: Mon, 12 Apr 2010 14:30:09 -0400 (EDT)


----- "Hanno Böck" <hanno () hboeck de> wrote:

http://www.reversemode.com/index.php?option=com_content&task=view&id=67&Itemid=1

[0DAY] JAVA Web Start Arbitrary command-line injection - "-XXaltjvm"
arbitrary dll loading 


I'm going to defer this one to MITRE. I suspect it's already on their
radar.

Thanks.

-- 
    JB


Current thread: