MEDIUM · 6.8

CVE-2009-2718

The Abstract Window Toolkit (AWT) implementation in Sun Java SE 6 before Update 15 on X11 does not impose the intended constraint on distance from the window border to the Security Warning Icon, which...

Vulnerability Description

The Abstract Window Toolkit (AWT) implementation in Sun Java SE 6 before Update 15 on X11 does not impose the intended constraint on distance from the window border to the Security Warning Icon, which makes it easier for context-dependent attackers to trick a user into interacting unsafely with an untrusted applet.

CVSS Score

6.8

MEDIUM

AV:N/AC:M/Au:N/C:P/I:P/A:P
Confidentiality
PARTIAL
Integrity
PARTIAL
Availability
PARTIAL

Affected Products

VendorProductVersions
SunJava Se6
X.OrgX11All versions

Related Weaknesses (CWE)

References

FAQ

What is CVE-2009-2718?

CVE-2009-2718 is a vulnerability with a CVSS score of 6.8 (MEDIUM). The Abstract Window Toolkit (AWT) implementation in Sun Java SE 6 before Update 15 on X11 does not impose the intended constraint on distance from the window border to the Security Warning Icon, which...

How severe is CVE-2009-2718?

CVE-2009-2718 has been rated MEDIUM with a CVSS base score of 6.8/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2009-2718?

Check the references section above for vendor advisories and patch information. Affected products include: Sun Java Se, X.Org X11.