Security Advisory

CVE-2011-2513

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2014-05-14 00:00:00
Last updated 2024-08-06 23:00:34
Assigner redhat
CVSS score not scored
State PUBLISHED

Description

The Java Network Launching Protocol (JNLP) implementation in IcedTea6 1.9.x before 1.9.9 and before 1.8.9, and IcedTea-Web 1.1.x before 1.1.1 and before 1.0.4, allows remote attackers to obtain the username and full path of the home and cache directories by accessing properties of the ClassLoader.