This application requires Javascript for optimal performance.

Oracle.Java.docBase.Parameter.Overflow

Release Date

Jan 27, 2012

Severity

high

Impact

This vulnerability can lead to remote code execution.

Description

Java Runtime Environment (JRE) is a platform that supports the execution of programs that are developed using the Java programming language. The JRE platform also supports Java Applets, which can be loaded from Web pages.

This indicates an attack attempt against a buffer overflow vulnerability in Oracle Java. It allows a remote attacker to execute arbitrary code via sending a crafted web page.

Affected Products

Oracle Java Runtime Environment version 1.6.0_21

Recommended Actions

Refer to the vendor's website for suggested workaround.
http://www.oracle.com/technetwork/topics/security/javacpuoct2010-176258.html

Coverage

IPS
VCM

Common Vulnerabilities and Exposures (CVE)

CVE-2010-3552

Reference: VID-30944