5
CVSSv2

CVE-2016-3508

Published: 21/07/2016 Updated: 13/05/2022
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 5.3 | Impact Score: 1.4 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92; Java SE Embedded 8u91; and JRockit R28.3.10 allows remote malicious users to affect availability via vectors related to JAXP, a different vulnerability than CVE-2016-3500.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

oracle jrockit r28.3.10

oracle jdk 1.8.0

oracle jdk 1.7.0

oracle jdk 1.6.0

oracle jre 1.6.0

oracle jre 1.8.0

oracle jre 1.7.0

oracle linux 5.0

oracle linux 6

oracle linux 7

Vendor Advisories

Several security issues were fixed in OpenJDK 8 ...
Several security issues were fixed in OpenJDK 6 ...
Several security issues were fixed in OpenJDK 7 ...
Several vulnerabilities have been discovered in OpenJDK, an implementation of the Oracle Java platform, resulting in breakouts of the Java sandbox or denial of service For the stable distribution (jessie), these problems have been fixed in version 7u111-267-1~deb8u1 We recommend that you upgrade your openjdk-7 packages ...
Multiple flaws were discovered in the Hotspot and Libraries components in OpenJDK An untrusted Java application or applet could use these flaws to completely bypass Java sandbox restrictions (CVE-2016-3606, CVE-2016-3598, CVE-2016-3610) Multiple denial of service flaws were found in the JAXP component in OpenJDK A specially crafted XML file coul ...
An insufficient bytecode verification flaw was discovered in the Hotspot component in OpenJDK An untrusted Java application or applet could use this flaw to completely bypass Java sandbox restrictions (CVE-2016-3606) Multiple denial of service flaws were found in the JAXP component in OpenJDK A specially crafted XML file could cause a Java appli ...
Multiple flaws were discovered in the Hotspot and Libraries components in OpenJDK An untrusted Java application or applet could use these flaws to completely bypass Java sandbox restrictions (CVE-2016-3606, CVE-2016-3587, CVE-2016-3598, CVE-2016-3610) Multiple denial of service flaws were found in the JAXP component in OpenJDK A specially crafte ...