Comment 2 for bug 115687

Revision history for this message
Andrew Mitchell (ajmitch) wrote : Re: java6 update1 is released, please update

NB: http://sunsolve.sun.com/search/document.do?assetkey=1-26-102934-1

"A buffer overflow vulnerability in the image parsing code in the Java Runtime Environment may allow an untrusted applet or application to elevate its privileges. For example, an applet may grant itself permissions to read and write local files or execute local applications that are accessible to the user running the untrusted applet.

A second vulnerability may allow an untrusted applet or application to cause the Java Virtual Machine to hang."