Vulnerability Description
java.security.AccessController in Sun Java Virtual Machine (JVM) in JRE 1.2.2 and 1.3.1 allows remote attackers to cause a denial of service (JVM crash) via a Java program that calls the doPrivileged method with a null argument.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Sun | Jre | 1.2.2 |
References
- http://ohhara.sarang.net/security/jvmcrash.txt
- http://securitytracker.com/id?1003418Exploit
- http://www.iss.net/security_center/static/8042.php
- http://www.securityfocus.com/bid/3992Exploit
- http://ohhara.sarang.net/security/jvmcrash.txt
- http://securitytracker.com/id?1003418Exploit
- http://www.iss.net/security_center/static/8042.php
- http://www.securityfocus.com/bid/3992Exploit
FAQ
What is CVE-2002-2072?
CVE-2002-2072 is a vulnerability with a CVSS score of 5.0 (MEDIUM). java.security.AccessController in Sun Java Virtual Machine (JVM) in JRE 1.2.2 and 1.3.1 allows remote attackers to cause a denial of service (JVM crash) via a Java program that calls the doPrivileged ...
How severe is CVE-2002-2072?
CVE-2002-2072 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2002-2072?
Check the references section above for vendor advisories and patch information. Affected products include: Sun Jre.