Unrated severityNVD Advisory· Published Sep 9, 2009· Updated Apr 23, 2026
CVE-2009-2205
CVE-2009-2205
Description
Stack-based buffer overflow in the Java Web Start command launcher in Java for Mac OS X 10.5 before Update 5 allows attackers to execute arbitrary code or cause a denial of service (application crash) via unspecified vectors.
Affected products
28cpe:2.3:a:apple:java_1.4:2:*:*:*:*:*:*:*+ 3 more
- cpe:2.3:a:apple:java_1.4:2:*:*:*:*:*:*:*
- cpe:2.3:a:apple:java_1.4:*:21:*:*:*:*:*:*range: <=2
- cpe:2.3:a:apple:java_1.4:2:16:*:*:*:*:*:*
- cpe:2.3:a:apple:java_1.4:2:18:*:*:*:*:*:*
cpe:2.3:a:apple:java_1.6:0:*:*:*:*:*:*:*+ 3 more
- cpe:2.3:a:apple:java_1.6:0:*:*:*:*:*:*:*
- cpe:2.3:a:apple:java_1.6:0:05:*:*:*:*:*:*
- cpe:2.3:a:apple:java_1.6:0:07:*:*:*:*:*:*
- cpe:2.3:a:apple:java_1.6:*:13:*:*:*:*:*:*range: <=0
cpe:2.3:o:apple:mac_os_x:10.5:*:*:*:*:*:*:*+ 9 more
- cpe:2.3:o:apple:mac_os_x:10.5:*:*:*:*:*:*:*
- cpe:2.3:o:apple:mac_os_x:10.5.0:*:*:*:*:*:*:*
- cpe:2.3:o:apple:mac_os_x:10.5.1:*:*:*:*:*:*:*
- cpe:2.3:o:apple:mac_os_x:10.5.2:*:*:*:*:*:*:*
- cpe:2.3:o:apple:mac_os_x:10.5.2:2008-002:*:*:*:*:*:*
- cpe:2.3:o:apple:mac_os_x:10.5.3:*:*:*:*:*:*:*
- cpe:2.3:o:apple:mac_os_x:10.5.4:*:*:*:*:*:*:*
- cpe:2.3:o:apple:mac_os_x:10.5.5:*:*:*:*:*:*:*
- cpe:2.3:o:apple:mac_os_x:10.5.6:*:*:*:*:*:*:*
- cpe:2.3:o:apple:mac_os_x:10.5.7:*:*:*:*:*:*:*
cpe:2.3:o:apple:mac_os_x_server:10.5:*:*:*:*:*:*:*+ 8 more
- cpe:2.3:o:apple:mac_os_x_server:10.5:*:*:*:*:*:*:*
- cpe:2.3:o:apple:mac_os_x_server:10.5.0:*:*:*:*:*:*:*
- cpe:2.3:o:apple:mac_os_x_server:10.5.1:*:*:*:*:*:*:*
- cpe:2.3:o:apple:mac_os_x_server:10.5.2:*:*:*:*:*:*:*
- cpe:2.3:o:apple:mac_os_x_server:10.5.3:*:*:*:*:*:*:*
- cpe:2.3:o:apple:mac_os_x_server:10.5.4:*:*:*:*:*:*:*
- cpe:2.3:o:apple:mac_os_x_server:10.5.5:*:*:*:*:*:*:*
- cpe:2.3:o:apple:mac_os_x_server:10.5.6:*:*:*:*:*:*:*
- cpe:2.3:o:apple:mac_os_x_server:10.5.7:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- lists.apple.com/archives/security-announce/2009/Sep/msg00000.htmlnvdPatchVendor Advisory
- securitytracker.com/idnvdPatch
- www.vupen.com/english/advisories/2009/2543nvd
News mentions
0No linked articles in our index yet.