The URLConnection function in MacOS Runtime Java (MRJ) 2.1 and earlier and the Microsoft virtual machine (VM) for MacOS allows a malicious web site operator to connect to arbitrary hosts using a HTTP redirection, in violation of the Java security model.
Link | Tags |
---|---|
http://archives.neohapsis.com/archives/bugtraq/2000-06/0056.html | mailing list exploit patch vendor advisory |
http://www.securityfocus.com/bid/1336 | vdb entry |
http://www.securityfocus.com/templates/archive.pike?list=1&date=2000-05-8&msg=391C95DE2DA.5E3BTAKAGI%40java-house.etl.go.jp | mailing list |