5
CVSSv2

CVE-2015-4911

Published: 22/10/2015 Updated: 13/05/2022
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60; Java SE Embedded 8u51; and JRockit R28.3.7 allows remote malicious users to affect availability via vectors related to JAXP, a different vulnerability than CVE-2015-4803 and CVE-2015-4893.

Vulnerable Product Search on Vulmon Subscribe to Product

oracle jrockit r28.3.7

oracle jre 1.7.0

oracle jre 1.8.0

oracle jre 1.6.0

oracle jdk 1.8.0

oracle jdk 1.6.0

oracle jdk 1.7.0

Vendor Advisories

Several security issues were fixed in OpenJDK 6 ...
Several security issues were fixed in OpenJDK 7 ...
Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60; Java SE Embedded 8u51; and JRockit R2837 allows remote attackers to affect availability via vectors related to JAXP, a different vulnerability than CVE-2015-4803 and CVE-2015-4893 ...
Multiple flaws were discovered in the CORBA, Libraries, RMI, Serialization, and 2D components in OpenJDK An untrusted Java application or applet could use these flaws to completely bypass Java sandbox restrictions (CVE-2015-4835, CVE-2015-4881, CVE-2015-4843, CVE-2015-4883, CVE-2015-4860, CVE-2015-4805, CVE-2015-4844) Multiple denial of service f ...
Multiple flaws were discovered in the CORBA, Libraries, RMI, Serialization, and 2D components in OpenJDK An untrusted Java application or applet could use these flaws to completely bypass Java sandbox restrictions (CVE-2015-4835, CVE-2015-4881, CVE-2015-4843, CVE-2015-4883, CVE-2015-4860, CVE-2015-4805, CVE-2015-4844) Multiple denial of service f ...
Multiple flaws were discovered in the CORBA, Libraries, RMI, Serialization, and 2D components in OpenJDK An untrusted Java application or applet could use these flaws to completely bypass Java sandbox restrictions (CVE-2015-4835, CVE-2015-4881, CVE-2015-4843, CVE-2015-4883, CVE-2015-4860, CVE-2015-4805, CVE-2015-4844) Multiple denial of service f ...

References

NVD-CWE-noinfohttp://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.htmlhttp://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.htmlhttp://www.securityfocus.com/bid/77209https://security.gentoo.org/glsa/201603-11https://security.gentoo.org/glsa/201603-14http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00009.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-12/msg00001.htmlhttp://www.ubuntu.com/usn/USN-2827-1http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00000.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-11/msg00008.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-12/msg00003.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-11/msg00000.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-11/msg00001.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-12/msg00004.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-12/msg00006.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-11/msg00019.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-01/msg00045.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-01/msg00005.htmlhttps://kc.mcafee.com/corporate/index?page=content&id=SB10141http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00010.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-12/msg00014.htmlhttp://www.ubuntu.com/usn/USN-2784-1http://www.securitytracker.com/id/1033884http://www.debian.org/security/2015/dsa-3381http://rhn.redhat.com/errata/RHSA-2015-1928.htmlhttp://rhn.redhat.com/errata/RHSA-2015-1927.htmlhttp://rhn.redhat.com/errata/RHSA-2015-1926.htmlhttp://rhn.redhat.com/errata/RHSA-2015-1921.htmlhttp://rhn.redhat.com/errata/RHSA-2015-1920.htmlhttp://rhn.redhat.com/errata/RHSA-2015-1919.htmlhttps://nvd.nist.govhttps://usn.ubuntu.com/2827-1/https://access.redhat.com/security/cve/cve-2015-4911