CVE-2009-3867Stack-based buffer overflow in the HsbParser.getSoundBank function in Sun Java SE in JDK and JRE 5.0 before Update 22, JDK and JRE 6 before Update 17, SDK and JRE 1.3.x before 1.3.1_27, and SDK and JRE 1.4.x before 1.4.2_24 allows remote attackers to execute arbitrary code via a long file: URL in an argument, aka Bug Id 6854303.
CWE-119 · Buffer errors
Working exploit published
A reviewed exploit catalogue carries this CVE. Somebody has published code a stranger can run.
CVSS E:P
| Index | Artifact | Stars | First seen |
|---|---|---|---|
| Exploit-DB | Sun Java JRE - getSoundbank 'file://' URI Buffer Overflow (Metasploit) | 2010-09-20 | |
| Exploit-DB | Sun Java SE November 2009 - Multiple Vulnerabilities (1) | 2009-10-29 | |
| Exploit-DB | Sun Java SE November 2009 - Multiple Vulnerabilities (2) | 2009-10-29 |
A Waratek agent blocks this today.
Applicable rule: Manual classification assigned status: MITIGATED-BY-ENTERPRISE-AGENT
| Decided by | manual classification : Manual classification of this CVE in the legacy dataset |
|---|---|
| Finding | Manual classification assigned status: MITIGATED-BY-ENTERPRISE-AGENT |
AV:N/AC:M/Au:N/C:C/I:C/A:C
1 metric
VRT selects the newest version's highest entry and
publishes it as cvssScore, newest rather than largest because scores are not comparable
across versions, and highest rather than first because the first entry is frequently a CNA placeholder
scoring 0.0 over NVD's own analysis.
| Version | Score | Band | Vector | Assigner | Type | |
|---|---|---|---|---|---|---|
| CVSS 2.0 | 9.3 | no band published | AV:N/AC:M/Au:N/C:C/I:C/A:C |
NVD | Primary | published |
| Source | Vendor | Product | Scheme | Affected Versions |
|---|---|---|---|---|
| nvd | sun | jdk | javase | 1.5.0:update_1 · 1.5.0:update_2 · 1.5.0:update_3 · 1.5.0:update_4 · 1.5.0:update_5 · 1.5.0:update_6 · 1.5.0:update_7 · 1.5.0:update_8 · 1.5.0:update_9 · 1.5.0:update_10 · 1.5.0:update_11 · 1.5.0:update_12 · 1.5.0:update_13 · 1.5.0:update_14 · 1.5.0:update_15 · 1.5.0:update_16 · 1.5.0:update_17 · 1.5.0:update_18 · 1.5.0:update_19 · 1.5.0:update_20 · 1.5.0:update_21 · 1.6.0:update_1 · 1.6.0:update2 · 1.6.0:update_3 · 1.6.0:update_4 · 1.6.0:update_5 · 1.6.0:update_6 · 1.6.0:update_7 · 1.6.0:update_8 · 1.6.0:update_9 · 1.6.0:update_10 · 1.6.0:update_11 · 1.6.0:update_12 · 1.6.0:update_13 · 1.6.0:update_14 · 1.6.0:update_15 · 1.6.0:update_16 |
| nvd | sun | jre | javase | 1.3.1_1 · 1.3.1_01 · 1.3.1_01a · 1.3.1_02 · 1.3.1_2 · 1.3.1_03 · 1.3.1_3 · 1.3.1_4 · 1.3.1_04 · 1.3.1_05 · 1.3.1_5 · 1.3.1_06 · 1.3.1_6 · 1.3.1_07 · 1.3.1_7 · 1.3.1_8 · 1.3.1_08 · 1.3.1_9 · 1.3.1_09 · 1.3.1_10 · 1.3.1_11 · 1.3.1_12 · 1.3.1_13 · 1.3.1_14 · 1.3.1_15 · 1.3.1_16 · 1.3.1_17 · 1.3.1_18 · 1.3.1_19 · 1.3.1_20 · 1.3.1_21 · 1.3.1_22 · 1.3.1_23 · 1.3.1_24 · 1.3.1_25 · 1.4.2_1 · 1.4.2_01 · 1.4.2_2 · 1.4.2_02 · 1.4.2_03 · 1.4.2_3 · 1.4.2_4 · 1.4.2_04 · 1.4.2_05 · 1.4.2_5 · 1.4.2_06 · 1.4.2_6 · 1.4.2_7 · 1.4.2_07 · 1.4.2_8 · 1.4.2_08 · 1.4.2_09 · 1.4.2_9 · 1.4.2_10 · 1.4.2_11 · 1.4.2_12 · 1.4.2_13 · 1.4.2_14 · 1.4.2_15 · 1.4.2_16 · 1.4.2_17 · 1.4.2_18 · 1.4.2_19 · 1.4.2_20 · 1.4.2_21 · 1.4.2_22 · 1.5.0:update_1 · 1.5.0:update_2 · 1.5.0:update_3 · 1.5.0:update_4 · 1.5.0:update_5 · 1.5.0:update_6 · 1.5.0:update_7 · 1.5.0:update_8 · 1.5.0:update_9 · 1.5.0:update_11 · 1.5.0:update_12 · 1.5.0:update_13 · 1.5.0:update_14 · 1.5.0:update_15 · 1.5.0:update_16 · 1.5.0:update_17 · 1.5.0:update_18 · 1.5.0:update_19 · 1.5.0:update_20 · 1.5.0:update_21 · 1.6.0:update_1 · 1.6.0:update_2 · 1.6.0:update_3 · 1.6.0:update_4 · 1.6.0:update_5 · 1.6.0:update_6 · 1.6.0:update_7 · 1.6.0:update_8 · 1.6.0:update_9 · 1.6.0:update_10 · 1.6.0:update_11 · 1.6.0:update_12 · 1.6.0:update_13 · 1.6.0:update_14 · 1.6.0:update_15 · 1.6.0:update_16 |
| nvd | sun | sdk | generic | 1.3.1_01 · 1.3.1_01a · 1.3.1_2 · 1.3.1_02 · 1.3.1_03 · 1.3.1_3 · 1.3.1_4 · 1.3.1_04 · 1.3.1_5 · 1.3.1_05 · 1.3.1_6 · 1.3.1_06 · 1.3.1_7 · 1.3.1_07 · 1.3.1_8 · 1.3.1_08 · 1.3.1_9 · 1.3.1_09 · 1.3.1_10 · 1.3.1_11 · 1.3.1_12 · 1.3.1_13 · 1.3.1_14 · 1.3.1_15 · 1.3.1_16 · 1.3.1_17 · 1.3.1_18 · 1.3.1_19 · 1.3.1_20 · 1.3.1_21 · 1.3.1_22 · 1.3.1_23 · 1.3.1_24 · 1.3.1_25 · 1.4.2_01 · 1.4.2_1 · 1.4.2_2 · 1.4.2_02 · 1.4.2_03 · 1.4.2_3 · 1.4.2_04 · 1.4.2_4 · 1.4.2_5 · 1.4.2_05 · 1.4.2_6 · 1.4.2_06 · 1.4.2_07 · 1.4.2_7 · 1.4.2_8 · 1.4.2_08 · 1.4.2_09 · 1.4.2_9 · 1.4.2_10 · 1.4.2_11 · 1.4.2_12 · 1.4.2_13 · 1.4.2_14 · 1.4.2_15 · 1.4.2_16 · 1.4.2_17 · 1.4.2_18 · 1.4.2_19 · 1.4.2_20 · 1.4.2_21 · 1.4.2_22 |
A reviewer manually classified this CVE. The retained record includes the labels and products below, but not the reviewer's reasoning.
## Manual Classification Context **Products:** JAVA-1.5.0-SUN, JAVA-1.6.0-SUN, JAVA SE
| Published | 2009-11-05 | By the CVE Program. |
|---|---|---|
| NVD record modified | 2026-06-16 | NVD's own last-modified date for this record. |