CVE-2005-1080

Directory traversal vulnerability in the Java Archive Tool (Jar) utility in J2SE SDK 1.4.2 and 1.5, and OpenJDK, allows remote attackers to create or overwrite arbitrary files via a .. (dot dot) in filenames in a .jar file.
References
Link Resource
http://advisories.mageia.org/MGASA-2015-0158.html
http://marc.info/?l=bugtraq&m=111331593310508&w=2
http://marc.info/?l=oss-security&m=127602564508766&w=2
http://marc.info/?l=oss-security&m=127603032617644&w=2
http://rhn.redhat.com/errata/RHSA-2015-0806.html
http://rhn.redhat.com/errata/RHSA-2015-0807.html
http://rhn.redhat.com/errata/RHSA-2015-0808.html
http://rhn.redhat.com/errata/RHSA-2015-0809.html
http://rhn.redhat.com/errata/RHSA-2015-0854.html
http://rhn.redhat.com/errata/RHSA-2015-0857.html
http://rhn.redhat.com/errata/RHSA-2015-0858.html
http://rhn.redhat.com/errata/RHSA-2015-1006.html
http://rhn.redhat.com/errata/RHSA-2015-1007.html
http://rhn.redhat.com/errata/RHSA-2015-1020.html
http://rhn.redhat.com/errata/RHSA-2015-1021.html
http://rhn.redhat.com/errata/RHSA-2015-1091.html
http://secunia.com/advisories/14902 Vendor Advisory
http://www.mandriva.com/security/advisories?name=MDVSA-2015:212
http://www.securiteam.com/securitynews/5IP0C0AFGW.html Exploit Vendor Advisory
http://www.securityfocus.com/bid/13083
https://bugzilla.redhat.com/show_bug.cgi?id=594497
https://bugzilla.redhat.com/show_bug.cgi?id=601823
http://advisories.mageia.org/MGASA-2015-0158.html
http://marc.info/?l=bugtraq&m=111331593310508&w=2
http://marc.info/?l=oss-security&m=127602564508766&w=2
http://marc.info/?l=oss-security&m=127603032617644&w=2
http://rhn.redhat.com/errata/RHSA-2015-0806.html
http://rhn.redhat.com/errata/RHSA-2015-0807.html
http://rhn.redhat.com/errata/RHSA-2015-0808.html
http://rhn.redhat.com/errata/RHSA-2015-0809.html
http://rhn.redhat.com/errata/RHSA-2015-0854.html
http://rhn.redhat.com/errata/RHSA-2015-0857.html
http://rhn.redhat.com/errata/RHSA-2015-0858.html
http://rhn.redhat.com/errata/RHSA-2015-1006.html
http://rhn.redhat.com/errata/RHSA-2015-1007.html
http://rhn.redhat.com/errata/RHSA-2015-1020.html
http://rhn.redhat.com/errata/RHSA-2015-1021.html
http://rhn.redhat.com/errata/RHSA-2015-1091.html
http://secunia.com/advisories/14902 Vendor Advisory
http://www.mandriva.com/security/advisories?name=MDVSA-2015:212
http://www.securiteam.com/securitynews/5IP0C0AFGW.html Exploit Vendor Advisory
http://www.securityfocus.com/bid/13083
https://bugzilla.redhat.com/show_bug.cgi?id=594497
https://bugzilla.redhat.com/show_bug.cgi?id=601823
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:sun:sdk:1.4.2:*:*:*:*:*:*:*
cpe:2.3:a:sun:sdk:1.5:*:*:*:*:*:*:*

History

20 Nov 2024, 23:56

Type Values Removed Values Added
References () http://advisories.mageia.org/MGASA-2015-0158.html - () http://advisories.mageia.org/MGASA-2015-0158.html -
References () http://marc.info/?l=bugtraq&m=111331593310508&w=2 - () http://marc.info/?l=bugtraq&m=111331593310508&w=2 -
References () http://marc.info/?l=oss-security&m=127602564508766&w=2 - () http://marc.info/?l=oss-security&m=127602564508766&w=2 -
References () http://marc.info/?l=oss-security&m=127603032617644&w=2 - () http://marc.info/?l=oss-security&m=127603032617644&w=2 -
References () http://rhn.redhat.com/errata/RHSA-2015-0806.html - () http://rhn.redhat.com/errata/RHSA-2015-0806.html -
References () http://rhn.redhat.com/errata/RHSA-2015-0807.html - () http://rhn.redhat.com/errata/RHSA-2015-0807.html -
References () http://rhn.redhat.com/errata/RHSA-2015-0808.html - () http://rhn.redhat.com/errata/RHSA-2015-0808.html -
References () http://rhn.redhat.com/errata/RHSA-2015-0809.html - () http://rhn.redhat.com/errata/RHSA-2015-0809.html -
References () http://rhn.redhat.com/errata/RHSA-2015-0854.html - () http://rhn.redhat.com/errata/RHSA-2015-0854.html -
References () http://rhn.redhat.com/errata/RHSA-2015-0857.html - () http://rhn.redhat.com/errata/RHSA-2015-0857.html -
References () http://rhn.redhat.com/errata/RHSA-2015-0858.html - () http://rhn.redhat.com/errata/RHSA-2015-0858.html -
References () http://rhn.redhat.com/errata/RHSA-2015-1006.html - () http://rhn.redhat.com/errata/RHSA-2015-1006.html -
References () http://rhn.redhat.com/errata/RHSA-2015-1007.html - () http://rhn.redhat.com/errata/RHSA-2015-1007.html -
References () http://rhn.redhat.com/errata/RHSA-2015-1020.html - () http://rhn.redhat.com/errata/RHSA-2015-1020.html -
References () http://rhn.redhat.com/errata/RHSA-2015-1021.html - () http://rhn.redhat.com/errata/RHSA-2015-1021.html -
References () http://rhn.redhat.com/errata/RHSA-2015-1091.html - () http://rhn.redhat.com/errata/RHSA-2015-1091.html -
References () http://secunia.com/advisories/14902 - Vendor Advisory () http://secunia.com/advisories/14902 - Vendor Advisory
References () http://www.mandriva.com/security/advisories?name=MDVSA-2015:212 - () http://www.mandriva.com/security/advisories?name=MDVSA-2015:212 -
References () http://www.securiteam.com/securitynews/5IP0C0AFGW.html - Exploit, Vendor Advisory () http://www.securiteam.com/securitynews/5IP0C0AFGW.html - Exploit, Vendor Advisory
References () http://www.securityfocus.com/bid/13083 - () http://www.securityfocus.com/bid/13083 -
References () https://bugzilla.redhat.com/show_bug.cgi?id=594497 - () https://bugzilla.redhat.com/show_bug.cgi?id=594497 -
References () https://bugzilla.redhat.com/show_bug.cgi?id=601823 - () https://bugzilla.redhat.com/show_bug.cgi?id=601823 -

Information

Published : 2005-05-02 04:00

Updated : 2024-11-20 23:56


NVD link : CVE-2005-1080

Mitre link : CVE-2005-1080

CVE.ORG link : CVE-2005-1080


JSON object : View

Products Affected

sun

  • sdk