Unrated severityNVD Advisory· Published Aug 10, 2009· Updated Jun 16, 2026
CVE-2009-2719
CVE-2009-2719
Description
The Java Web Start implementation in Sun Java SE 6 before Update 15 allows context-dependent attackers to cause a denial of service (NullPointerException) via a crafted .jnlp file, as demonstrated by the jnlp_file/appletDesc/index.html#misc test in the Technology Compatibility Kit (TCK) for the Java Network Launching Protocol (JNLP).
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2cpe:2.3:a:sun:java_se:*:14:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:sun:java_se:*:14:*:*:*:*:*:*range: <=6
- (no CPE)range: <6u15
Patches
Vulnerability mechanics
References
7- java.sun.com/javase/6/webnotes/6u15.htmlnvdVendor Advisory
- secunia.com/advisories/37386nvd
- secunia.com/advisories/37460nvd
- security.gentoo.org/glsa/glsa-200911-02.xmlnvd
- www.securityfocus.com/archive/1/507985/100/0/threadednvd
- www.vmware.com/security/advisories/VMSA-2009-0016.htmlnvd
- www.vupen.com/english/advisories/2009/3316nvd
News mentions
0No linked articles in our index yet.