多个供应商java.net.URLConnection分支程序直接连接漏洞

漏洞信息详情

多个供应商java.net.URLConnection分支程序直接连接漏洞

漏洞简介

MacOS Runtime Java (MRJ) 2.1版本及之前版本和MacOS的Microsoft虚拟机(VM)中的URLConnection函数存在漏洞。在Java安全模式的违反中,恶意网站操作者可以通过使用HTTP重定向来连接到任意主机。

漏洞公告

Currently the SecurityFocus staff are not aware of any vendor supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: vuldb@securityfocus.com.

参考网址

来源: BUGTRAQ
名称: 20000609 Security Holes Found in URLConnection of MRJ and IE of Mac OS (was Re: Reappearance of an old IE security bug)
链接:http://archives.neohapsis.com/archives/bugtraq/2000-06/0056.html

来源: BID
名称: 1336
链接:http://www.securityfocus.com/bid/1336

来源: BUGTRAQ
名称: 20000513 Re: Reappearance of an old IE security bug
链接:http://www.securityfocus.com/templates/archive.pike?list=1&date=2000-05-8&msg=391C95DE2DA.5E3BTAKAGI@java-house.etl.go.jp

© 版权声明
THE END
喜欢就支持一下吧
点赞0 分享