Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2011-3560

Опубликовано: 18 окт. 2011
Источник: redhat
CVSS2: 6.4
EPSS Низкий

Описание

Unspecified vulnerability in the Java Runtime Environment component in Oracle Java SE JDK and JRE 7, 6 Update 27 and earlier, 5.0 Update 31 and earlier, and 1.4.2_33 and earlier allows remote untrusted Java Web Start applications and untrusted Java applets to affect confidentiality and integrity, related to JSSE.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 4java-1.5.0-ibmAffected
Red Hat Enterprise Linux 6java-1.4.2-ibm-sapAffected
Extras for RHEL 4java-1.6.0-sunFixedRHSA-2011:138419.10.2011
Extras for RHEL 4java-1.4.2-ibmFixedRHSA-2012:000609.01.2012
Extras for RHEL 4java-1.6.0-ibmFixedRHSA-2012:003418.01.2012
Red Hat Enterprise Linux 5java-1.6.0-openjdkFixedRHSA-2011:138018.10.2011
Red Hat Enterprise Linux 6java-1.6.0-openjdkFixedRHSA-2011:138018.10.2011
Red Hat Enterprise Linux 6 Supplementaryjava-1.6.0-sunFixedRHSA-2011:138419.10.2011
Red Hat Enterprise Linux 6 Supplementaryjava-1.6.0-ibmFixedRHSA-2012:003418.01.2012
Red Hat Network Satellite Server v 5.4java-1.6.0-ibmFixedRHSA-2013:145523.10.2013

Показывать по

Дополнительная информация

Статус:

Moderate
https://bugzilla.redhat.com/show_bug.cgi?id=745379OpenJDK: missing checkSetFactory calls in HttpsURLConnection (JSSE, 7096936)

EPSS

Процентиль: 80%
0.01422
Низкий

6.4 Medium

CVSS2

Связанные уязвимости

ubuntu
около 14 лет назад

Unspecified vulnerability in the Java Runtime Environment component in Oracle Java SE JDK and JRE 7, 6 Update 27 and earlier, 5.0 Update 31 and earlier, and 1.4.2_33 and earlier allows remote untrusted Java Web Start applications and untrusted Java applets to affect confidentiality and integrity, related to JSSE.

nvd
около 14 лет назад

Unspecified vulnerability in the Java Runtime Environment component in Oracle Java SE JDK and JRE 7, 6 Update 27 and earlier, 5.0 Update 31 and earlier, and 1.4.2_33 and earlier allows remote untrusted Java Web Start applications and untrusted Java applets to affect confidentiality and integrity, related to JSSE.

debian
около 14 лет назад

Unspecified vulnerability in the Java Runtime Environment component in ...

github
больше 3 лет назад

Unspecified vulnerability in the Java Runtime Environment component in Oracle Java SE JDK and JRE 7, 6 Update 27 and earlier, 5.0 Update 31 and earlier, and 1.4.2_33 and earlier allows remote untrusted Java Web Start applications and untrusted Java applets to affect confidentiality and integrity, related to JSSE.

oracle-oval
около 14 лет назад

ELSA-2011-1380: java-1.6.0-openjdk security update (CRITICAL)

EPSS

Процентиль: 80%
0.01422
Низкий

6.4 Medium

CVSS2