首页 -> 安全研究

安全研究

安全漏洞
Sun Microsystems Java虚拟机安全管理器拒绝服务攻击漏洞

发布日期:2003-10-26
更新日期:2003-10-31

受影响系统:
Sun JRE (Linux Production Release) 1.4.2
Sun JRE (Linux Production Release) 1.4.1_04
Sun JRE (Linux Production Release) 1.4.1_03
Sun JRE (Linux Production Release) 1.4.1_02
Sun JRE (Linux Production Release) 1.4.1_01
Sun JRE (Linux Production Release) 1.4.1
Sun JRE (Linux Production Release) 1.4.0_04
Sun JRE (Linux Production Release) 1.4.0_03
Sun JRE (Linux Production Release) 1.4.0_02
Sun JRE (Linux Production Release) 1.4
Sun JRE (Linux Production Release) 1.3.1_07
Sun JRE (Linux Production Release) 1.3.1_06
Sun JRE (Linux Production Release) 1.3.1_06
Sun JRE (Linux Production Release) 1.3.1_05
Sun JRE (Linux Production Release) 1.3.1_03
Sun JRE (Linux Production Release) 1.3.1_02
Sun JRE (Linux Production Release) 1.3.1_01
Sun JRE (Linux Production Release) 1.3.1
Sun JRE (Linux Production Release) 1.3.0_05
Sun JRE (Linux Production Release) 1.3.0_02
Sun JRE (Linux Production Release) 1.3.0
Sun JRE (Linux Production Release) 1.2.2_12
Sun JRE (Linux Production Release) 1.2.2_015
Sun JRE (Linux Production Release) 1.2.2_014
Sun JRE (Linux Production Release) 1.2.2_013
Sun JRE (Linux Production Release) 1.2.2_011
Sun JRE (Linux Production Release) 1.2.2_010
Sun JRE (Linux Production Release) 1.2.2_007
Sun JRE (Linux Production Release) 1.2.2_003
Sun JRE (Solaris Production Release) 1.4.2
Sun JRE (Solaris Production Release) 1.4.1_03
Sun JRE (Solaris Production Release) 1.4.1_02
Sun JRE (Solaris Production Release) 1.4.1_01
Sun JRE (Solaris Production Release) 1.4.1
Sun JRE (Solaris Production Release) 1.4.0_03
Sun JRE (Solaris Production Release) 1.4
Sun JRE (Solaris Production Release) 1.3_05
Sun JRE (Solaris Production Release) 1.3.1_06
Sun JRE (Solaris Production Release) 1.3.1_05
Sun JRE (Solaris Production Release) 1.3.1_03
Sun JRE (Solaris Production Release) 1.3.1_02
Sun JRE (Solaris Production Release) 1.3.1_01
Sun JRE (Solaris Production Release) 1.3.0_02
Sun JRE (Solaris Production Release) 1.3
Sun JRE (Solaris Production Release) 1.2.2_11
Sun JRE (Solaris Production Release) 1.2.2_10
Sun JRE (Solaris Production Release) 1.2.2_07
Sun JRE (Solaris Production Release) 1.2.1
Sun JRE (Solaris Production Release) 1.2
Sun JRE (Solaris Production Release) 1.1.8_15
Sun JRE (Solaris Production Release) 1.1.8_14
Sun JRE (Solaris Production Release) 1.1.8_13
Sun JRE (Solaris Production Release) 1.1.8_10
Sun JRE (Solaris Production Release) 1.1.7B
Sun JRE (Solaris Production Release) 1.1.6
Sun JRE (Solaris Reference Release) 1.2.2_015
Sun JRE (Solaris Reference Release) 1.2.2_014
Sun JRE (Solaris Reference Release) 1.2.2_013
Sun JRE (Solaris Reference Release) 1.2.2_012
Sun JRE (Solaris Reference Release) 1.2.2_011
Sun JRE (Solaris Reference Release) 1.2.2_010
Sun JRE (Solaris Reference Release) 1.2.2
Sun JRE (Solaris Reference Release) 1.2.1
Sun JRE (Solaris Reference Release) 1.2
Sun JRE (Solaris Reference Release) 1.1.8_099
Sun JRE (Solaris Reference Release) 1.1.8_008
Sun JRE (Solaris Reference Release) 1.1.8_007
Sun JRE (Windows Production Release) 1.4.2
Sun JRE (Windows Production Release) 1.4.1_03
Sun JRE (Windows Production Release) 1.4.1_02
Sun JRE (Windows Production Release) 1.4.1_01
Sun JRE (Windows Production Release) 1.4.1
Sun JRE (Windows Production Release) 1.4.0_03
Sun JRE (Windows Production Release) 1.4
Sun JRE (Windows Production Release) 1.3_05
Sun JRE (Windows Production Release) 1.3.1_06
Sun JRE (Windows Production Release) 1.3.1_05
Sun JRE (Windows Production Release) 1.3.1_03
Sun JRE (Windows Production Release) 1.3.1_02
Sun JRE (Windows Production Release) 1.3.1_01a
Sun JRE (Windows Production Release) 1.3.0_02
Sun JRE (Windows Production Release) 1.3
Sun JRE (Windows Production Release) 1.2.2_011
Sun JRE (Windows Production Release) 1.2.2_010
Sun JRE (Windows Production Release) 1.2.2_007
Sun JRE (Windows Production Release) 1.2.1
Sun JRE (Windows Production Release) 1.2
Sun JRE (Windows Production Release) 1.1.8_009
Sun JRE (Windows Production Release) 1.1.8_008
Sun JRE (Windows Production Release) 1.1.8_007
Sun SDK (Solaris Production Release) 1.4.1_03
Sun SDK (Solaris Production Release) 1.4.1_02
Sun SDK (Solaris Production Release) 1.4.1_01
Sun SDK (Solaris Production Release) 1.4.1
Sun SDK (Solaris Production Release) 1.4.0_03
Sun SDK (Solaris Production Release) 1.4.0_02
Sun SDK (Solaris Production Release) 1.4
Sun SDK (Solaris Production Release) 1.3_05
Sun SDK (Solaris Production Release) 1.3.1_06
Sun SDK (Solaris Production Release) 1.3.1_05
Sun SDK (Solaris Production Release) 1.3.1_03
Sun SDK (Solaris Production Release) 1.3.1_02
Sun SDK (Solaris Production Release) 1.3.1_01
Sun SDK (Solaris Production Release) 1.3.0_02
Sun SDK (Solaris Production Release) 1.3
Sun SDK (Solaris Production Release) 1.2.2_11
Sun SDK (Solaris Production Release) 1.2.2_10
Sun SDK (Solaris Production Release) 1.2.2_07a
Sun SDK (Solaris Production Release) 1.2.2_07
Sun SDK (Solaris Production Release) 1.2.1
Sun SDK (Solaris Production Release) 1.2
Sun SDK (Solaris Reference Release) 1.2.2_015
Sun SDK (Solaris Reference Release) 1.2.2_014
Sun SDK (Solaris Reference Release) 1.2.2_013
Sun SDK (Solaris Reference Release) 1.2.2_012
Sun SDK (Solaris Reference Release) 1.2.2_011
Sun SDK (Solaris Reference Release) 1.2.2_010
Sun SDK (Solaris Reference Release) 1.2.2_007
Sun SDK (Solaris Reference Release) 1.2.1
Sun SDK (Solaris Reference Release) 1.2
Sun SDK (Windows Production Release) 1.4.1_03
Sun SDK (Windows Production Release) 1.4.1_02
Sun SDK (Windows Production Release) 1.4.1_01
Sun SDK (Windows Production Release) 1.4.1
Sun SDK (Windows Production Release) 1.4.0_03
Sun SDK (Windows Production Release) 1.4.0_02
Sun SDK (Windows Production Release) 1.4
Sun SDK (Windows Production Release) 1.3_05
Sun SDK (Windows Production Release) 1.3.1_06
Sun SDK (Windows Production Release) 1.3.1_05
Sun SDK (Windows Production Release) 1.3.1_03
Sun SDK (Windows Production Release) 1.3.1_02
Sun SDK (Windows Production Release) 1.3.1_01a
Sun SDK (Windows Production Release) 1.3.0_02
Sun SDK (Windows Production Release) 1.2.2_011
Sun SDK (Windows Production Release) 1.2.2_010
Sun SDK (Windows Production Release) 1.2.2_007
Sun SDK (Windows Production Release) 1.2.1
Sun SDK (Windows Production Release) 1.2
Sun JRE (Linux Production Release) 1.2.2_005
    - Debian Linux 2.2
    - Mandrake Linux 7.2
    - RedHat Linux 7.0
    - SuSE Linux 7.0
Sun JRE (Solaris Production Release) 1.2.2_05a
    - Sun Solaris 8.0
    - Sun Solaris 7.0
    - Sun Solaris 2.6
Sun SDK (Solaris Production Release) 1.2.2_05a
    - Sun Solaris 8.0
    - Sun Solaris 7.0
    - Sun Solaris 2.6
描述:
BUGTRAQ  ID: 8892
CVE(CAN) ID: CVE-2003-1134

Java 2安全管理器(Security Managers)针对系统完整性和安全性进行检查的工具。

Java 2安全管理器实现存在问题,远程攻击者可以利用这个漏洞对Sun Java虚拟机进行拒绝服务攻击。

构建特殊的类并运行,会由于NULL指针异常而导致JAVA虚拟机崩溃。

<*来源:Marc Schoenefeld (marc.schoenefeld@uni-muenster.de
  
  链接:http://marc.theaimsgroup.com/?l=bugtraq&m=106727338529919&w=2
*>

建议:
厂商补丁:

Sun
---
目前厂商还没有提供补丁或者升级程序,我们建议使用此软件的用户随时关注厂商的主页以获取最新版本:

http://java.sun.com/

浏览次数:3541
严重程度:0(网友投票)
本安全漏洞由绿盟科技翻译整理,版权所有,未经许可,不得转载
绿盟科技给您安全的保障