Oval Definition:oval:org.mitre.oval:def:14117
Revision Date:2014-08-18Version:7
Title:The JNLPClassLoader class in IcedTea-Web before 1.0.1, as used in OpenJDK Runtime Environment 1.6.0, allows remote attackers to gain privileges via unknown vectors related to multiple signers and the assignment of "an inappropriate security descriptor."
Description:The JNLPClassLoader class in IcedTea-Web before 1.0.1, as used in OpenJDK Runtime Environment 1.6.0, allows remote attackers to gain privileges via unknown vectors related to multiple signers and the assignment of "an inappropriate security descriptor."
Family:windowsClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2011-0706
Platform(s):Microsoft Windows 2000
Microsoft Windows 7
Microsoft Windows 8
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Server 2008 R2
Microsoft Windows Server 2012
Microsoft Windows Vista
Microsoft Windows XP
Product(s):Java Development Kit
Definition Synopsis
  • Determine if the version of Java Development Kit is less than 1.6.0:update_1 and is greater than or equal to 1.6.0
  • Determine if the version of Java Development Kit is less than 1.6.0:update_1
  • AND Java SE Development Kit 6 is installed
  • BACK