Sun Microsystems JRE isInstalled.dnsResolve Function Memory Exception

  Severity: CRITICAL
  CVE Identifier: CVE-2007-5019
  Advisory Date: JUL 21, 2015

  DESCRIPTION

Buffer overflow in the Sun Java Web Start ActiveX control in Java Runtime Environment (JRE) 1.6.0_X allows remote attackers to have an unknown impact via a long argument to the dnsResolve (isInstalled.dnsResolve) method.

  TREND MICRO PROTECTION INFORMATION

Apply associated Trend Micro DPI Rules.

  SOLUTION

  Trend Micro Deep Security DPI Rule Number: 1001119
  Trend Micro Deep Security DPI Rule Name: 1001119 - Microsoft Internet Explorer JRE isInstalled.dnsResolve Function Memory Exception

  AFFECTED SOFTWARE AND VERSION

  • Sun JRE 1.6.0_0
  • Sun JRE 1.6.0_10
  • Sun Java Web Start unversioned
  • Sun SDK 1.3.0