exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 1 of 1 RSS Feed

Files

Zero Day Initiative Advisory 10-204
Posted Oct 13, 2010
Authored by Tipping Point | Site zerodayinitiative.com

Zero Day Initiative Advisory 10-204 - This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Oracle's Java Runtime Environment. User interaction is required to exploit this vulnerability in that the target must visit a malicious page. The specific flaw exists within the implementation of the color profile parser. When processing a the 'devs' tag structure out of a color profile, the parser will read a 32-bit integer and use it to calculate the size for a memory allocation. Due to the result being larger than 32 bits, an integer overflow will occur. This will lead to code execution under the context of the application.

tags | advisory, java, remote, overflow, arbitrary, code execution
advisories | CVE-2010-3566
SHA-256 | 4568924430cdde5ee71ad85ef960d3f36d89d2816b3de7d6519e3d8687feceb4
Page 1 of 1
Back1Next

Top Authors In Last 30 Days

Recent News

News RSS Feed
US Govt IT Help Desk Techie Leaked Top Secrets To Foreign Nation
Posted Sep 22, 2023

tags | headline, government, usa, data loss, spyware, ethiopia
MGM Resorts Operations Resume 10 Days After Cyberattack
Posted Sep 21, 2023

tags | headline, hacker, malware, cybercrime, data loss, fraud, cryptography
Poland Investigates OpenAI Over Privacy Concerns
Posted Sep 21, 2023

tags | headline, botnet, poland
Cisco Beefs Up Cybersecurity Play With $28 Billion Splunk Deal
Posted Sep 21, 2023

tags | headline, cisco
India's Biggest Tech Centers Named As Cyber Crime Hotspots
Posted Sep 21, 2023

tags | headline, phone, india, cybercrime, fraud
Feds Issue Snatch Ransomware Warning
Posted Sep 21, 2023

tags | headline, hacker, government, malware, usa, cybercrime, fbi, cryptography
Vast Majority Of Bot Attacks Emanate From China And Russia
Posted Sep 20, 2023

tags | headline, hacker, government, russia, china, botnet, cyberwar, military
Robocall Scammers Sentenced In US After Netting $1.2 Million
Posted Sep 20, 2023

tags | headline, government, usa, phone, india, cybercrime, fraud
The Signal Protocol Used By 1+ Billion People Is Getting A Post-Quantum Makeover
Posted Sep 20, 2023

tags | headline, privacy, phone, cryptography
Marvell Disputes Claim Cavium Backdoored Chips For Uncle Sam
Posted Sep 20, 2023

tags | headline, government, usa, spyware, backdoor
View More News →
packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close