Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2015-5006

Опубликовано: 13 нояб. 2015
Источник: redhat
CVSS2: 2.1
EPSS Низкий

Описание

IBM Java Security Components in IBM SDK, Java Technology Edition 8 before SR2, 7 R1 before SR3 FP20, 7 before SR9 FP20, 6 R1 before SR8 FP15, and 6 before SR16 FP15 allow physically proximate attackers to obtain sensitive information by reading the Kerberos Credential Cache.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5java-1.5.0-ibmWill not fix
Red Hat Enterprise Linux 6java-1.5.0-ibmWill not fix
Red Hat Enterprise Linux 5 Supplementaryjava-1.7.0-ibmFixedRHSA-2015:250723.11.2015
Red Hat Enterprise Linux 5 Supplementaryjava-1.6.0-ibmFixedRHSA-2015:250823.11.2015
Red Hat Enterprise Linux 6 Supplementaryjava-1.7.1-ibmFixedRHSA-2015:250623.11.2015
Red Hat Enterprise Linux 6 Supplementaryjava-1.6.0-ibmFixedRHSA-2015:250823.11.2015
Red Hat Enterprise Linux 7 Supplementaryjava-1.7.1-ibmFixedRHSA-2015:250623.11.2015
Red Hat Enterprise Linux 7 Supplementaryjava-1.8.0-ibmFixedRHSA-2015:250923.11.2015
Red Hat Satellite 5.6java-1.7.0-ibmFixedRHSA-2016:143018.07.2016
Red Hat Satellite 5.6java-1.7.1-ibmFixedRHSA-2016:143018.07.2016

Показывать по

Дополнительная информация

Статус:

Moderate
https://bugzilla.redhat.com/show_bug.cgi?id=1282379JDK: local disclosure of kerberos credentials cache

EPSS

Процентиль: 22%
0.00074
Низкий

2.1 Low

CVSS2

Связанные уязвимости

nvd
около 10 лет назад

IBM Java Security Components in IBM SDK, Java Technology Edition 8 before SR2, 7 R1 before SR3 FP20, 7 before SR9 FP20, 6 R1 before SR8 FP15, and 6 before SR16 FP15 allow physically proximate attackers to obtain sensitive information by reading the Kerberos Credential Cache.

github
больше 3 лет назад

IBM Java Security Components in IBM SDK, Java Technology Edition 8 before SR2, 7 R1 before SR3 FP20, 7 before SR9 FP20, 6 R1 before SR8 FP15, and 6 before SR16 FP15 allow physically proximate attackers to obtain sensitive information by reading the Kerberos Credential Cache.

suse-cvrf
около 10 лет назад

Security update for java-1_8_0-ibm

suse-cvrf
около 10 лет назад

Security update for java-1_7_0-ibm

suse-cvrf
около 10 лет назад

Security update for java-1_7_1-ibm

EPSS

Процентиль: 22%
0.00074
Низкий

2.1 Low

CVSS2