CVE-2009-2030

JDK 6.0 - XML Digital Signature Verification Vulnerability

Title source: llm
STIX 2.1

Description

Unspecified vulnerability in the XML Digital Signature verification functionality in JVA-RUN in JDK 6.0 in IBM OS/400 i5/OS V5R4M0 and V6R1M0 has unknown impact and attack vectors related to "XML SECURITY PATCH."

References (7)

Core 7
Core References
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/35356
Third Party Advisory mailing-list x_refsource_vim
http://www.attrition.org/pipermail/vim/2009-June/002190.html
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/35265
Patch, Vendor Advisory vendor-advisory x_refsource_aixapar
http://www-01.ibm.com/support/docview.wss?uid=nas2e858199605d67111862575cc003c7276
Patch, Vendor Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2009/1536
Patch, Vendor Advisory vendor-advisory x_refsource_aixapar
http://www-01.ibm.com/support/docview.wss?uid=nas2741c96b7c573b81a862575cc003c726e
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/51005

Scores

EPSS 0.0075
EPSS Percentile 73.4%

Details

Status published
Products (3)
ibm/os\/400 v5r4m0
ibm/os\/400 v6r1m0
sun/jdk 6
Published Jun 11, 2009
Tracked Since Feb 18, 2026