Oval Definition:oval:org.mitre.oval:def:12662
Revision Date:2015-04-20Version:30
Title:HP-UX Running Java, Remote Execution of Arbitrary Code, Disclosure of Information, and Other Vulnerabilities
Description:The Double.parseDouble method in Java Runtime Environment (JRE) in Oracle Java SE and Java for Business 6 Update 23 and earlier, 5.0 Update 27 and earlier, and 1.4.2_29 and earlier, as used in OpenJDK, Apache, JBossweb, and other products, allows remote attackers to cause a denial of service via a crafted string that triggers an infinite loop of estimations during conversion to a double-precision binary floating-point number, as demonstrated using 2.2250738585072012e-308.
Family:unixClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2010-4476
Platform(s):HP-UX 11
Product(s):
Definition Synopsis
  • Criteria meets HP Security Bulletin HPSBUX02685
  • platforms
  • HP-UX B.11.31
  • OR HP-UX B.11.11
  • OR HP-UX B.11.23
  • AND filesets tests
  • Jdk15.JDK15-IPF32 version is less than 1.5.0.22.00
  • OR Jre15.JRE15-COM version is less than 1.5.0.22.00
  • OR Jdk15.JDK15-IPF64 version is less than 1.5.0.22.00
  • OR Jre15.JRE15-PA20 version is less than 1.5.0.22.00
  • OR Jre15.JRE15-PA20-HS version is less than 1.5.0.22.00
  • OR Jre15.JRE15-PA20W version is less than 1.5.0.22.00
  • OR Jre15.JRE15-PA20W-HS version is less than 1.5.0.22.00
  • OR Jre15.JRE15-IPF32 version is less than 1.5.0.22.00
  • OR Jre15.JRE15-IPF32-HS version is less than 1.5.0.22.00
  • OR Jre15.JRE15-IPF64 version is less than 1.5.0.22.00
  • OR Jdk15.JDK15-PA20W version is less than 1.5.0.22.00
  • OR Jre15.JRE15-IPF64-HS version is less than 1.5.0.22.00
  • OR Jdk15.JDK15-PA20 version is less than 1.5.0.22.00
  • OR Jdk15.JDK15-COM version is less than 1.5.0.22.00
  • OR Criteria meets HP Security Bulletin HPSBUX02685
  • platforms
  • HP-UX B.11.11
  • OR HP-UX B.11.23
  • OR HP-UX B.11.31
  • AND filesets tests
  • Jdk60.JDK60-PA20 version is less than 1.6.0.10.00
  • OR Jdk60.JDK60-PA20W version is less than 1.6.0.10.00
  • OR Jre60.JRE60-COM version is less than 1.6.0.10.00
  • OR Jre60.JRE60-IPF32 version is less than 1.6.0.10.00
  • OR Jre60.JRE60-IPF32-HS version is less than 1.6.0.10.00
  • OR Jre60.JRE60-IPF64 version is less than 1.6.0.10.00
  • OR Jre60.JRE60-IPF64-HS version is less than 1.6.0.10.00
  • OR Jre60.JRE60-PA20 version is less than 1.6.0.10.00
  • OR Jre60.JRE60-PA20-HS version is less than 1.6.0.10.00
  • OR Jre60.JRE60-PA20W-HS version is less than 1.6.0.10.00
  • OR Jdk60.JDK60-IPF32 version is less than 1.6.0.10.00
  • OR Jdk60.JDK60-IPF64 version is less than 1.6.0.10.00
  • OR Jdk60.JDK60-COM version is less than 1.6.0.10.00
  • BACK