Candidate: CVE-2010-4473 PublicDate: 2011-02-17 19:00:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-4473 http://www.oracle.com/technetwork/topics/security/javacpufeb2011-304611.html Description: Unspecified vulnerability in the Java Runtime Environment (JRE) in Oracle Java SE and Java for Business 6 Update 23 and earlier, 5.0 Update 27 and earlier, and 1.4.2_29 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Sound and unspecified APIs, a different vulnerability than CVE-2010-4454 and CVE-2010-4462. Ubuntu-Description: Notes: mdeslaur> probably doesn't affect openjdk Bugs: Priority: medium Discovered-by: Assigned-to: CVSS: Patches_sun-java6: upstream_sun-java6: released (6.24-1) dapper_sun-java6: DNE hardy_sun-java6: released (6.24-1build0.8.04.1) karmic_sun-java6: released (6.24-1build0.9.10.1) lucid_sun-java6: released (6.24-1build0.10.04.1) maverick_sun-java6: released (6.24-1build0.10.10.1) natty_sun-java6: released (6.24-1build0.10.10.1) devel_sun-java6: not-affected (6.26-1oneiric1) Patches_sun-java5: upstream_sun-java5: released (1.5.0-28) dapper_sun-java5: ignored (end-of-life) hardy_sun-java5: ignored (upstream sun-java5 is EoL) karmic_sun-java5: DNE lucid_sun-java5: DNE maverick_sun-java5: DNE natty_sun-java5: DNE devel_sun-java5: DNE Patches_openjdk-6: upstream_openjdk-6: released (6b24) dapper_openjdk-6: DNE hardy_openjdk-6: not-affected karmic_openjdk-6: not-affected lucid_openjdk-6: not-affected maverick_openjdk-6: not-affected natty_openjdk-6: not-affected devel_openjdk-6: not-affected Patches_openjdk-6b18: upstream_openjdk-6b18: released (6b24) dapper_openjdk-6b18: DNE hardy_openjdk-6b18: DNE karmic_openjdk-6b18: not-affected lucid_openjdk-6b18: not-affected maverick_openjdk-6b18: not-affected natty_openjdk-6b18: not-affected devel_openjdk-6b18: not-affected