ubuntu · CVE-2010-4465

Quick triage

Priority: medium Published: 2011-02-17 00:00:00 UTC Updated: 2024-07-24 15:57:39 UTC

View at Official ubuntu advisory, NVD, CVE.org · CVE detail

Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.

Tracker summary

CVE-2010-4465 medium priority: Ubuntu including 4 source packages (openjdk-6, openjdk-6b18, sun-java5, sun-java6), 32 status rows across 8 suites (dapper, hardy, karmic, lucid, maverick, natty, oneiric, upstream): released 20, DNE 9, ignored 2, not-affected 1.

Description:

Unspecified vulnerability in the Java Runtime Environment (JRE) in Oracle Java SE and Java for Business 6 Update 23 and earlier, 5.0 Update 27 and earlier, and 1.4.2_29 and earlier allows remote untrusted Java Web Start applications and untrusted Java applets to affect confidentiality, integrity, and availability via unknown vectors related to Swing. NOTE: the previous information was obtained from the February 2011 CPU. Oracle has not commented on claims from a downstream vendor that this issue is related to the lack of framework support by AWT event dispatch, and/or "clipboard access in Applets."

cvelogic Threat Intelligence