Language:
https://access.redhat.com/security/cve/cve-2008-5354
https://access.redhat.com/security/cve/cve-2008-5356
https://access.redhat.com/security/cve/cve-2008-5357
https://access.redhat.com/security/cve/cve-2008-5359
https://access.redhat.com/security/cve/cve-2008-5360
https://www.ibm.com/us-en/?ar=1
https://access.redhat.com/errata/RHSA-2009:0466
https://access.redhat.com/security/cve/cve-2008-3103
https://access.redhat.com/security/cve/cve-2008-5345
https://access.redhat.com/security/cve/cve-2008-5346
https://access.redhat.com/security/cve/cve-2008-5348
https://access.redhat.com/security/cve/cve-2008-5349
https://access.redhat.com/security/cve/cve-2008-5350
https://access.redhat.com/security/cve/cve-2008-5351
深刻度: Critical
ID: 43843
ファイル名: redhat-RHSA-2009-0466.nasl
バージョン: 1.25
タイプ: local
エージェント: unix
公開日: 2010/1/10
更新日: 2021/1/14
サポートされているセンサー: Frictionless Assessment AWS, Frictionless Assessment Azure, Frictionless Assessment Agent, Nessus Agent, Agentless Assessment, Nessus
リスクファクター: Critical
スコア: 9.7
リスクファクター: Critical
基本値: 10
ベクトル: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C
CPE: p-cpe:/a:redhat:enterprise_linux:java-1.5.0-ibm, p-cpe:/a:redhat:enterprise_linux:java-1.5.0-ibm-devel, cpe:/o:redhat:enterprise_linux:4, cpe:/o:redhat:enterprise_linux:5
必要な KB アイテム: Host/local_checks_enabled, Host/RedHat/release, Host/RedHat/rpm-list, Host/cpu
エクスプロイトが利用可能: true
エクスプロイトの容易さ: Exploits are available
パッチ公開日: 2009/5/7
脆弱性公開日: 2008/7/9
CANVAS (CANVAS)
Core Impact
Metasploit (Sun Java Calendar Deserialization Privilege Escalation)
CVE: CVE-2008-3103, CVE-2008-5345, CVE-2008-5346, CVE-2008-5348, CVE-2008-5349, CVE-2008-5350, CVE-2008-5351, CVE-2008-5352, CVE-2008-5353, CVE-2008-5354, CVE-2008-5356, CVE-2008-5357, CVE-2008-5359, CVE-2008-5360