Quantcast
Channel: Bug Bounty Files ≈ Packet Storm
Viewing all articles
Browse latest Browse all 19

Packet Storm Advisory 2013-0813-1 - Oracle Java IntegerInterleavedRaster.verify()

$
0
0
The IntegerInterleavedRaster.verify() method in Oracle Java versions prior to 7u25 is vulnerable to a signed integer overflow that allows bypassing of "dataOffsets[0]" boundary checks. This vulnerability allows for remote code execution. User interaction is required for this exploit in that the target must visit a malicious page or open a malicious file. This finding was purchased through the Packet Storm Bug Bounty program.

Viewing all articles
Browse latest Browse all 19

Trending Articles