VulDB: Sun Java JRE up to 1.5.0 Update 6 Applet Handler Font.createFont() denial of service
General

scipID: 2247
Affected: Sun Java JRE up to 1.5.0 Update 6
Published: 05/16/2006 (Marc Schoenefeld)
Risk:
critical
Entry: 96.2% complete
Created: 05/22/2006
Updated: 09/03/2012
Summary
A vulnerability, which was classified as critical, was found in Sun Java JRE up to 1.5.0 Update 6. This affects the function Font.createFont() of the component Applet Handler. The manipulation with an unknown input leads to a denial of service vulnerability. This is going to have an impact on availability.
The weakness was disclosed 05/16/2006 by Marc Schoenefeld. This vulnerability is uniquely identified as CVE-2006-2426 since 05/17/2006. It is possible to initiate the attack remotely. Technical details of the vulnerability are known, but there is no available exploit.
The vulnerability was handled as a non-public zero-day exploit for at least 1061 days. The vulnerability scanner Nessus provides a plugin with the ID 36366 (USN-748-1 : openjdk-6 vulnerabilities), which helps to determine the existence of the flaw in a target environment. It is assigned to the family Ubuntu Local Security Checks and running in the context local.
Applying a patch is able to eliminate this problem. The bugfix is ready for download at java.sun.com. A possible mitigation has been published 4 years after the disclosure of the vulnerability. The vulnerability is also documented in the databases at OSVDB (25561), Secunia (SA34675), SecurityFocus (BID 17981) and X-Force (26493).CVSS
Base Score: 4.9 (CVSS2#AV:N/AC:H/Au:S/C:N/I:N/A:C) [?]
| Access Vector | Access Complexity | Authentication | Confidentiality | Integrity | Availability |
|---|---|---|---|---|---|
| Local | High | Multiple | None | None | None |
| Adjacent | Medium | Single | Partial | Partial | Partial |
| Network | Low | None | Complete | Complete | Complete |
Exploiting
Class: Denial of service
Local: No
Remote: Yes
Availability: No
Nessus ID: 36366
Nessus Name: USN-748-1 : openjdk-6 vulnerabilities
Nessus Family: Ubuntu Local Security Checks
Nessus Context: local
Countermeasures
Recommended: Alternative
Reaction Time: 1061 days since reported
0-Day Time: 1061 days since found
Exposure Time: 1061 days since known
Patch: java.sun.com
Timeline
05/16/2006 | Advisory disclosed
05/16/2006 | OSVDB entry created
05/17/2006 | CVE assigned
05/22/2006 | VulDB entry created
04/11/2009 | Countermeasure disclosed
04/23/2009 | Nessus plugin released
09/03/2012 | VulDB entry updated
Sources
Researcher: Marc Schoenefeld
Confirmation: support.avaya.com
OSVDB: 25561
CVE: CVE-2006-2426 (mitre.org) (nist.org) (cvedetails.com)
Secunia: 34675
SecurityFocus: 17981
X-Force: 26493
Vupen: ADV-2006-1824



















