10
CVSSv2

CVE-2016-0494

Published: 21/01/2016 Updated: 13/05/2022
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 891
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Unspecified vulnerability in the Java SE and Java SE Embedded components in Oracle Java SE 6u105, 7u91, and 8u66 and Java SE Embedded 8u65 allows remote malicious users to affect confidentiality, integrity, and availability via unknown vectors related to 2D.

Vulnerable Product Search on Vulmon Subscribe to Product

canonical ubuntu linux 12.04

canonical ubuntu linux 15.10

canonical ubuntu linux 14.04

canonical ubuntu linux 15.04

oracle jdk 1.8.0

oracle jdk 1.6.0

oracle jdk 1.7.0

oracle jre 1.6.0

oracle jre 1.7.0

oracle jre 1.8.0

Vendor Advisories

Debian Bug report logs - #838694 icu: CVE-2016-7415: Stack based buffer overflow in locidcpp Package: src:icu; Maintainer for src:icu is Laszlo Boszormenyi (GCS) <gcs@debianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Fri, 23 Sep 2016 17:27:01 UTC Severity: important Tags: security, upstream F ...
Several security issues were fixed in OpenJDK 7 ...
Several security issues were fixed in OpenJDK 6 ...
Several security issues were fixed in ICU ...
Several vulnerabilities have been discovered in OpenJDK, an implementation of the Oracle Java platform, resulting in breakouts of the Java sandbox, information disclosure, denial of service and insecure cryptography For the oldstable distribution (wheezy), these problems have been fixed in version 6b38-11310-1~deb7u1 We recommend that you upgra ...
Several vulnerabilities were discovered in the International Components for Unicode (ICU) library CVE-2014-9911 Michele Spagnuolo discovered a buffer overflow vulnerability which might allow remote attackers to cause a denial of service or possibly execute arbitrary code via crafted text CVE-2015-2632 An integer overflow vulnerab ...
Several vulnerabilities have been discovered in OpenJDK, an implementation of the Oracle Java platform, resulting in breakouts of the Java sandbox, information disclosur, denial of service and insecure cryptography For the oldstable distribution (wheezy), these problems have been fixed in version 7u95-264-1~deb7u1 For the stable distribution (j ...
An out-of-bounds write flaw was found in the JPEG image format decoder in the AWT component in OpenJDK A specially crafted JPEG image could cause a Java application to crash or, possibly execute arbitrary code An untrusted Java application or applet could use this flaw to bypass Java sandbox restrictions (CVE-2016-0483) A flaw was found in the w ...
An out-of-bounds write flaw was found in the JPEG image format decoder in the AWT component in OpenJDK A specially crafted JPEG image could cause a Java application to crash or, possibly execute arbitrary code An untrusted Java application or applet could use this flaw to bypass Java sandbox restrictions (CVE-2016-0483) An integer signedness iss ...
An out-of-bounds write flaw was found in the JPEG image format decoder in the AWT component in OpenJDK A specially crafted JPEG image could cause a Java application to crash or, possibly execute arbitrary code An untrusted Java application or applet could use this flaw to bypass Java sandbox restrictions (CVE-2016-0483) An integer signedness iss ...
Unspecified vulnerability in the Java SE and Java SE Embedded components in Oracle Java SE 6u105, 7u91, and 8u66 and Java SE Embedded 8u65 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D ...

Github Repositories

Vuls: VULnerability Scanner Vulnerability scanner for Linux, agentless, written in golang We have a slack team Join slack team README in Japanese README in French Abstract For a system administrator, having to perform security vulnerability analysis and software update on a daily basis can be a burden To avoid downtime in production environment, it is common for system a

icat for JSON with Golang

icat for JSON with Golang Example package main import ( "fmt" "log" "githubcom/spiegel-im-spiegel/icat4json" ) func main() { json, err := icat4jsonGet(icat4jsonToolICATW) if err != nil { logFatal(err) } data, err := jsonDecode() if err != nil { logFatal(err) } fmtPrintf("Title: %v\n", dataTitle) fmtPrintf(&quo

Vuls: VULnerability Scanner Vulnerability scanner for Linux/FreeBSD, agentless, written in golang We have a slack team Join slack team README in Japanese README in French Abstract For a system administrator, having to perform security vulnerability analysis and software update on a daily basis can be a burden To avoid downtime in production environment, it is common fo

Vulnerability scanner for Linux, agentless, written in golang

Vuls: VULnerability Scanner Vulnerability scanner for Linux, agentless, written in golang We have a slack team Join slack team README in Japanese README in French Abstract For a system administrator, having to perform security vulnerability analysis and software update on a daily basis can be a burden To avoid downtime in production environment, it is common for system a

References

NVD-CWE-noinfohttp://www.oracle.com/technetwork/topics/security/cpujan2016-2367955.htmlhttp://www.securitytracker.com/id/1034715http://www.ubuntu.com/usn/USN-2885-1http://www.ubuntu.com/usn/USN-2884-1http://www.oracle.com/technetwork/topics/security/linuxbulletinjan2016-2867209.htmlhttps://access.redhat.com/errata/RHSA-2016:1430https://security.gentoo.org/glsa/201603-14http://www.debian.org/security/2016/dsa-3465http://rhn.redhat.com/errata/RHSA-2016-0053.htmlhttp://rhn.redhat.com/errata/RHSA-2016-0054.htmlhttp://rhn.redhat.com/errata/RHSA-2016-0049.htmlhttp://rhn.redhat.com/errata/RHSA-2016-0057.htmlhttp://rhn.redhat.com/errata/RHSA-2016-0056.htmlhttp://rhn.redhat.com/errata/RHSA-2016-0055.htmlhttp://rhn.redhat.com/errata/RHSA-2016-0067.htmlhttp://rhn.redhat.com/errata/RHSA-2016-0050.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-01/msg00038.htmlhttp://www.debian.org/security/2016/dsa-3458http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00044.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-01/msg00042.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-01/msg00048.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-01/msg00045.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-01/msg00043.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-01/msg00041.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-01/msg00047.htmlhttps://security.gentoo.org/glsa/201610-08https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=838694https://nvd.nist.govhttps://usn.ubuntu.com/2884-1/https://access.redhat.com/security/cve/cve-2016-0494