CVE-2007-3698

Publication date 11 July 2007

Last updated 17 July 2025


Ubuntu priority

Description

The Java Secure Socket Extension (JSSE) in Sun JDK and JRE 6 Update 1 and earlier, JDK and JRE 5.0 Updates 7 through 11, and SDK and JRE 1.4.2_11 through 1.4.2_14, when using JSSE for SSL/TLS support, allows remote attackers to cause a denial of service (CPU consumption) via certain SSL/TLS handshake requests.

Status

Package Ubuntu Release Status
sun-java5 9.10 karmic Not in release
9.04 jaunty
Fixed 1.5.0-12-1
8.10 intrepid
Fixed 1.5.0-12-1
8.04 LTS hardy
Fixed 1.5.0-12-1
7.10 gutsy
Fixed 1.5.0-12-1
7.04 feisty Ignored end of life, was needed
6.10 edgy Ignored end of life, was needed
6.06 LTS dapper Ignored end of life


Access our resources on patching vulnerabilities