AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2009-2674

HIGH · CVSS 7.5 EPSS 6.39%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2009-08-05 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2009-2674
Severity
HIGH
CVSS
7.5
EPSS
6.39%
Java

Original NVD Description

Integer overflow in javaws.exe in Sun Java Web Start in Sun Java Runtime Environment (JRE) in JDK and JRE 6 before Update 15 allows context-dependent attackers to execute arbitrary code via a crafted JPEG image that is not properly handled during display to a splash screen, which triggers a heap-based buffer overflow.