Описание
Unspecified vulnerability in Oracle Java SE 8u20 allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Hotspot.
It was discovered that the Hotspot component in OpenJDK failed to properly handle malformed Shared Archive files. A local attacker able to modify a Shared Archive file used by a virtual machine of a different user could possibly use this flaw to escalate their privileges.
Затронутые пакеты
Платформа | Пакет | Состояние | Рекомендация | Релиз |
---|---|---|---|---|
Red Hat Enterprise Linux 5 | java-1.6.0-openjdk | Not affected | ||
Red Hat Enterprise Linux 5 | java-1.6.0-sun | Not affected | ||
Red Hat Enterprise Linux 5 | java-1.7.0-openjdk | Not affected | ||
Red Hat Enterprise Linux 5 | java-1.7.0-oracle | Not affected | ||
Red Hat Enterprise Linux 6 | java-1.6.0-openjdk | Not affected | ||
Red Hat Enterprise Linux 6 | java-1.6.0-sun | Not affected | ||
Red Hat Enterprise Linux 6 | java-1.7.0-openjdk | Not affected | ||
Red Hat Enterprise Linux 6 | java-1.7.0-oracle | Not affected | ||
Red Hat Enterprise Linux 7 | java-1.6.0-openjdk | Not affected | ||
Red Hat Enterprise Linux 7 | java-1.6.0-sun | Not affected |
Показывать по
Дополнительная информация
Статус:
EPSS
6.2 Medium
CVSS2
Связанные уязвимости
Unspecified vulnerability in Oracle Java SE 8u20 allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Hotspot.
Unspecified vulnerability in Oracle Java SE 8u20 allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Hotspot.
Unspecified vulnerability in Oracle Java SE 8u20 allows local users to ...
Unspecified vulnerability in Oracle Java SE 8u20 allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Hotspot.
Уязвимость программной платформы Java Platform, позволяющая нарушителю нарушить конфиденциальность, целостность и доступность защищаемой информации
EPSS
6.2 Medium
CVSS2