{ "schema_version": "1.4.0", "id": "GHSA-g6jh-xpq2-3rw2", "modified": "2025-04-11T03:43:16Z", "published": "2022-05-17T02:04:28Z", "aliases": [ "CVE-2010-4351" ], "details": "The JNLP SecurityManager in IcedTea (IcedTea.so) 1.7 before 1.7.7, 1.8 before 1.8.4, and 1.9 before 1.9.4 for Java OpenJDK returns from the checkPermission method instead of throwing an exception in certain circumstances, which might allow context-dependent attackers to bypass the intended security policy by creating instances of ClassLoader.", "severity": [], "affected": [], "references": [ { "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2010-4351" }, { "type": "WEB", "url": "https://access.redhat.com/errata/RHSA-2011:0176" }, { "type": "WEB", "url": "https://access.redhat.com/security/cve/CVE-2010-4351" }, { "type": "WEB", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=663680" }, { "type": "WEB", "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/64893" }, { "type": "WEB", "url": "http://blog.fuseyism.com/index.php/2011/01/18/security-icedtea6-177-184-194-released" }, { "type": "WEB", "url": "http://lists.fedoraproject.org/pipermail/package-announce/2011-January/053276.html" }, { "type": "WEB", "url": "http://lists.fedoraproject.org/pipermail/package-announce/2011-January/053288.html" }, { "type": "WEB", "url": "http://osvdb.org/70605" }, { "type": "WEB", "url": "http://secunia.com/advisories/43002" }, { "type": "WEB", "url": "http://secunia.com/advisories/43078" }, { "type": "WEB", "url": "http://secunia.com/advisories/43085" }, { "type": "WEB", "url": "http://secunia.com/advisories/43135" }, { "type": "WEB", "url": "http://security.gentoo.org/glsa/glsa-201406-32.xml" }, { "type": "WEB", "url": "http://www.debian.org/security/2011/dsa-2224" }, { "type": "WEB", "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2011:054" }, { "type": "WEB", "url": "http://www.redhat.com/support/errata/RHSA-2011-0176.html" }, { "type": "WEB", "url": "http://www.securityfocus.com/bid/45894" }, { "type": "WEB", "url": "http://www.ubuntu.com/usn/USN-1052-1" }, { "type": "WEB", "url": "http://www.ubuntu.com/usn/USN-1055-1" }, { "type": "WEB", "url": "http://www.vupen.com/english/advisories/2011/0165" }, { "type": "WEB", "url": "http://www.vupen.com/english/advisories/2011/0166" }, { "type": "WEB", "url": "http://www.vupen.com/english/advisories/2011/0215" }, { "type": "WEB", "url": "http://www.vupen.com/english/advisories/2011/0239" }, { "type": "WEB", "url": "http://www.zerodayinitiative.com/advisories/ZDI-11-014" } ], "database_specific": { "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2011-01-20T19:00:00Z" } }