CVE-2005-2738
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
31/12/2005
Last modified:
03/04/2025
Description
Java 1.4.2 before 1.4.2 Release 2 on Apple Mac OS X does not prevent multiple programs from opening the same port as a Java ServerSocket, which allows local users to operate a Java program that intercepts network data intended for the ServerSocket of a different Java program.
Impact
Base Score 2.0
5.00
Severity 2.0
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:sun:java:1.4.2:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://docs.info.apple.com/article.html?artnum=302265
- http://lists.apple.com/archives/security-announce/2005/Sep/msg00001.html
- http://secunia.com/advisories/16808
- http://www.ciac.org/ciac/bulletins/p-306.shtml
- http://www.osvdb.org/19397
- http://www.securityfocus.com/bid/14827
- http://www.vupen.com/english/advisories/2005/1734
- https://exchange.xforce.ibmcloud.com/vulnerabilities/22269
- http://docs.info.apple.com/article.html?artnum=302265
- http://lists.apple.com/archives/security-announce/2005/Sep/msg00001.html
- http://secunia.com/advisories/16808
- http://www.ciac.org/ciac/bulletins/p-306.shtml
- http://www.osvdb.org/19397
- http://www.securityfocus.com/bid/14827
- http://www.vupen.com/english/advisories/2005/1734
- https://exchange.xforce.ibmcloud.com/vulnerabilities/22269



