5.8
CVSSv2

CVE-2015-4871

Published: 21/10/2015 Updated: 13/05/2022
CVSS v2 Base Score: 5.8 | Impact Score: 4.9 | Exploitability Score: 8.6
VMScore: 516
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:N

Vulnerability Summary

Unspecified vulnerability in Oracle Java SE 7u85 allows remote malicious users to affect confidentiality and integrity via unknown vectors related to Libraries.

Vulnerable Product Search on Vulmon Subscribe to Product

oracle jre 1.7.0

oracle jdk 1.7.0

Vendor Advisories

A security issue was fixed in OpenJDK 7 ...
Synopsis Critical: java-170-ibm security update Type/Severity Security Advisory: Critical Topic Updated java-170-ibm packages that fix several security issues are nowavailable for Red Hat Enterprise Linux 5 SupplementaryRed Hat Product Security has rated this update as having Critical securityimpact C ...
Synopsis Critical: java-180-ibm security update Type/Severity Security Advisory: Critical Topic Updated java-180-ibm packages that fix several security issues are nowavailable for Red Hat Enterprise Linux 7 SupplementaryRed Hat Product Security has rated this update as having Critical securityimpact C ...
Synopsis Critical: java-171-ibm security update Type/Severity Security Advisory: Critical Topic Updated java-171-ibm packages that fix several security issues are nowavailable for Red Hat Enterprise Linux 6 and 7 SupplementaryRed Hat Product Security has rated this update as having Critical securityimp ...
It was discovered that rebinding a receiver of a direct method handle may allow a protected method to be accessed For the oldstable distribution (wheezy), this problem has been fixed in version 7u91-263-1~deb7u1 For the stable distribution (jessie), this problem has been fixed in version 7u91-263-1~deb8u1 For the unstable distribution (sid), ...
An out-of-bounds write flaw was found in the JPEG image format decoder in the AWT component in OpenJDK A specially crafted JPEG image could cause a Java application to crash or, possibly execute arbitrary code An untrusted Java application or applet could use this flaw to bypass Java sandbox restrictions (CVE-2016-0483) An integer signedness iss ...
Unspecified vulnerability in Oracle Java SE 7u85 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Libraries ...

References

NVD-CWE-noinfohttp://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.htmlhttp://www.oracle.com/technetwork/topics/security/linuxbulletinjan2016-2867209.htmlhttps://access.redhat.com/errata/RHSA-2016:1430http://www.securityfocus.com/bid/77238https://security.gentoo.org/glsa/201603-11https://security.gentoo.org/glsa/201603-14http://rhn.redhat.com/errata/RHSA-2016-0053.htmlhttp://rhn.redhat.com/errata/RHSA-2016-0054.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-12/msg00001.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-12/msg00003.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-01/msg00044.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-01/msg00042.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-01/msg00048.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-12/msg00000.htmlhttp://rhn.redhat.com/errata/RHSA-2015-2506.htmlhttp://rhn.redhat.com/errata/RHSA-2015-2507.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-12/msg00004.htmlhttp://www.debian.org/security/2015/dsa-3401http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00006.htmlhttp://rhn.redhat.com/errata/RHSA-2015-2509.htmlhttp://www.ubuntu.com/usn/USN-2818-1http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00005.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-01/msg00043.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-01/msg00047.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-12/msg00014.htmlhttp://www.securitytracker.com/id/1033884http://www.debian.org/security/2015/dsa-3381http://rhn.redhat.com/errata/RHSA-2015-1927.htmlhttps://usn.ubuntu.com/2818-1/https://nvd.nist.govhttps://access.redhat.com/security/cve/cve-2015-4871