CVE-2007-4381

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
17/08/2007
Last modified:
09/04/2025

Description

Unspecified vulnerability in the font parsing implementation in Sun JDK and JRE 5.0 Update 9 and earlier, and SDK and JRE 1.4.2_14 and earlier, allows remote attackers to perform unauthorized actions via an applet that grants certain privileges to itself.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:sun:jdk:*:update9:*:*:*:*:*:* 1.5.0 (including)
cpe:2.3:a:sun:jre:*:update14:*:*:*:*:*:* 1.4.2 (including)
cpe:2.3:a:sun:sdk:*:*:*:*:*:*:*:* 1.4.2_14 (including)


References to Advisories, Solutions, and Tools