Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2016-0636

Опубликовано: 23 мар. 2016
Источник: redhat
CVSS2: 6.8
EPSS Средний

Описание

Unspecified vulnerability in Oracle Java SE 7u97, 8u73, and 8u74 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to the Hotspot sub-component.

An improper type safety check was discovered in the Hotspot component. An untrusted Java application or applet could use this flaw to bypass Java Sandbox restrictions.

Дополнительная информация

Статус:

Critical
Дефект:
CWE-358
https://bugzilla.redhat.com/show_bug.cgi?id=1320650OpenJDK: missing type safety checks for MethodHandle calls across class loaders, incorrect CVE-2013-5838 fix (Hotspot, 8151666)

EPSS

Процентиль: 96%
0.26528
Средний

6.8 Medium

CVSS2

Связанные уязвимости

CVSS3: 8.1
ubuntu
больше 9 лет назад

Unspecified vulnerability in Oracle Java SE 7u97, 8u73, and 8u74 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to the Hotspot sub-component.

CVSS3: 8.1
nvd
больше 9 лет назад

Unspecified vulnerability in Oracle Java SE 7u97, 8u73, and 8u74 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to the Hotspot sub-component.

CVSS3: 8.1
debian
больше 9 лет назад

Unspecified vulnerability in Oracle Java SE 7u97, 8u73, and 8u74 allow ...

suse-cvrf
больше 9 лет назад

Security update for java-1_8_0-openjdk

suse-cvrf
больше 9 лет назад

Security update for java-1_7_0-openjdk

EPSS

Процентиль: 96%
0.26528
Средний

6.8 Medium

CVSS2