Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2010-3860
Description:IcedTea 1.7.x before 1.7.6, 1.8.x before 1.8.3, and 1.9.x before 1.9.2, as based on OpenJDK 6, declares multiple sensitive variables as public, which allows remote attackers to obtain sensitive information including (1) user.name, (2) user.home, and (3) java.home system properties, and other sensitive information such as installation directories.
Test IDs: 1.3.6.1.4.1.25623.1.0.870384   1.3.6.1.4.1.25623.1.0.862705   1.3.6.1.4.1.25623.1.0.68837   1.3.6.1.4.1.25623.1.0.881430   1.3.6.1.4.1.25623.1.0.880546   1.3.6.1.4.1.25623.1.0.68679   1.3.6.1.4.1.25623.1.0.840543   1.3.6.1.4.1.25623.1.0.68632  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2010-3860
42412
http://secunia.com/advisories/42412
42417
http://secunia.com/advisories/42417
43085
http://secunia.com/advisories/43085
45114
http://www.securityfocus.com/bid/45114
ADV-2010-3090
http://www.vupen.com/english/advisories/2010/3090
ADV-2010-3108
http://www.vupen.com/english/advisories/2010/3108
ADV-2011-0215
http://www.vupen.com/english/advisories/2011/0215
FEDORA-2010-18393
http://lists.fedoraproject.org/pipermail/package-announce/2010-December/051711.html
GLSA-201406-32
http://security.gentoo.org/glsa/glsa-201406-32.xml
RHSA-2011:0176
http://www.redhat.com/support/errata/RHSA-2011-0176.html
SUSE-SR:2010:023
http://lists.opensuse.org/opensuse-security-announce/2010-12/msg00000.html
USN-1024-1
http://www.ubuntu.com/usn/USN-1024-1
http://blog.fuseyism.com/index.php/2010/11/24/icedtea6-176-183-and-192-released/
http://blog.fuseyism.com/index.php/2010/11/24/icedtea6-176-183-and-192-released/
http://icedtea.classpath.org/hg/release/icedtea6-1.9/rev/9aa0018d8c28
http://icedtea.classpath.org/hg/release/icedtea6-1.9/rev/9aa0018d8c28
https://bugzilla.redhat.com/show_bug.cgi?id=645843
https://bugzilla.redhat.com/show_bug.cgi?id=645843




© 1998-2025 E-Soft Inc. All rights reserved.