CVE-2003-1572
Sun Java Media Framework (JMF) 2.1.1 through 2.1.1c allows unsigned applets to cause a denial of service (JVM crash) and read or write unauthorized memory locations via the ReadEnv class, as demonstrated by reading environment variables using modified .data and .size fields.
Scoring
- Severity
- HIGH
- CVSS base score
- 9.3
- CVSS vector
- AV:N/AC:M/Au:N/C:C/I:C/A:C
- EPSS probability
- 0.40%
- Published
- 2009-06-01
- Last modified
- 2026-03-16
Affected products
- n/a n/a