Unrated severityNVD Advisory· Published Nov 9, 2009· Updated Jun 16, 2026
CVE-2009-3879
CVE-2009-3879
Description
Multiple unspecified vulnerabilities in the (1) X11 and (2) Win32GraphicsDevice subsystems in Sun Java SE 5.0 before Update 22 and 6 before Update 17, and OpenJDK, have unknown impact and attack vectors, related to failure to clone arrays that are returned by the getConfigurations function, aka Bug Id 6822057.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
39cpe:2.3:a:sun:jre:1.5.0:update_1:*:*:*:*:*:*+ 36 more
- cpe:2.3:a:sun:jre:1.5.0:update_1:*:*:*:*:*:*
- cpe:2.3:a:sun:jre:1.5.0:update10:*:*:*:*:*:*
- cpe:2.3:a:sun:jre:1.5.0:update_11:*:*:*:*:*:*
- cpe:2.3:a:sun:jre:1.5.0:update_12:*:*:*:*:*:*
- cpe:2.3:a:sun:jre:1.5.0:update_13:*:*:*:*:*:*
- cpe:2.3:a:sun:jre:1.5.0:update_14:*:*:*:*:*:*
- cpe:2.3:a:sun:jre:1.5.0:update_15:*:*:*:*:*:*
- cpe:2.3:a:sun:jre:1.5.0:update_16:*:*:*:*:*:*
- cpe:2.3:a:sun:jre:1.5.0:update_17:*:*:*:*:*:*
- cpe:2.3:a:sun:jre:1.5.0:update_18:*:*:*:*:*:*
- cpe:2.3:a:sun:jre:1.5.0:update_19:*:*:*:*:*:*
- cpe:2.3:a:sun:jre:1.5.0:update_2:*:*:*:*:*:*
- cpe:2.3:a:sun:jre:1.5.0:update_20:*:*:*:*:*:*
- cpe:2.3:a:sun:jre:1.5.0:update_3:*:*:*:*:*:*
- cpe:2.3:a:sun:jre:1.5.0:update_4:*:*:*:*:*:*
- cpe:2.3:a:sun:jre:1.5.0:update_5:*:*:*:*:*:*
- cpe:2.3:a:sun:jre:1.5.0:update_6:*:*:*:*:*:*
- cpe:2.3:a:sun:jre:1.5.0:update_7:*:*:*:*:*:*
- cpe:2.3:a:sun:jre:1.5.0:update_8:*:*:*:*:*:*
- cpe:2.3:a:sun:jre:1.5.0:update_9:*:*:*:*:*:*
- cpe:2.3:a:sun:jre:1.6.0:update_1:*:*:*:*:*:*
- cpe:2.3:a:sun:jre:1.6.0:update_10:*:*:*:*:*:*
- cpe:2.3:a:sun:jre:1.6.0:update_11:*:*:*:*:*:*
- cpe:2.3:a:sun:jre:1.6.0:update_12:*:*:*:*:*:*
- cpe:2.3:a:sun:jre:1.6.0:update_13:*:*:*:*:*:*
- cpe:2.3:a:sun:jre:1.6.0:update_14:*:*:*:*:*:*
- cpe:2.3:a:sun:jre:1.6.0:update_15:*:*:*:*:*:*
- cpe:2.3:a:sun:jre:1.6.0:update_2:*:*:*:*:*:*
- cpe:2.3:a:sun:jre:1.6.0:update_3:*:*:*:*:*:*
- cpe:2.3:a:sun:jre:1.6.0:update_4:*:*:*:*:*:*
- cpe:2.3:a:sun:jre:1.6.0:update_5:*:*:*:*:*:*
- cpe:2.3:a:sun:jre:1.6.0:update_6:*:*:*:*:*:*
- cpe:2.3:a:sun:jre:1.6.0:update_7:*:*:*:*:*:*
- cpe:2.3:a:sun:jre:1.6.0:update_8:*:*:*:*:*:*
- cpe:2.3:a:sun:jre:1.6.0:update_9:*:*:*:*:*:*
- cpe:2.3:a:sun:jre:*:update_16:*:*:*:*:*:*range: <=1.6.0
- cpe:2.3:a:sun:jre:*:update_21:*:*:*:*:*:*range: <=1.5.0
- cpe:2.3:a:sun:openjdk:*:*:*:*:*:*:*:*
- Range: <=5.0 Update 21 / <=6 Update 16
Patches
Vulnerability mechanics
References
8- java.sun.com/j2se/1.5.0/ReleaseNotes.htmlnvdVendor Advisory
- java.sun.com/javase/6/webnotes/6u17.htmlnvdVendor Advisory
- secunia.com/advisories/37386nvd
- security.gentoo.org/glsa/glsa-200911-02.xmlnvd
- www.mandriva.com/security/advisoriesnvd
- bugzilla.redhat.com/show_bug.cginvd
- oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7545nvd
- oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9568nvd
News mentions
0No linked articles in our index yet.