Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2016-5573

Опубликовано: 18 окт. 2016
Источник: redhat
CVSS3: 7.5
CVSS2: 5.1
EPSS Низкий

Описание

Unspecified vulnerability in Oracle Java SE 6u121, 7u111, 8u102; and Java SE Embedded 8u101 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Hotspot, a different vulnerability than CVE-2016-5582.

It was discovered that the Hotspot component of OpenJDK did not properly check received Java Debug Wire Protocol (JDWP) packets. An attacker could possibly use this flaw to send debugging commands to a Java program running with debugging enabled if they could make victim's browser send HTTP requests to the JDWP port of the debugged application.

Дополнительная информация

Статус:

Important
Дефект:
CWE-20
https://bugzilla.redhat.com/show_bug.cgi?id=1385544OpenJDK: insufficient checks of JDWP packets (Hotspot, 8159519)

EPSS

Процентиль: 84%
0.02275
Низкий

7.5 High

CVSS3

5.1 Medium

CVSS2

Связанные уязвимости

CVSS3: 8.3
ubuntu
почти 9 лет назад

Unspecified vulnerability in Oracle Java SE 6u121, 7u111, 8u102; and Java SE Embedded 8u101 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Hotspot, a different vulnerability than CVE-2016-5582.

CVSS3: 8.3
nvd
почти 9 лет назад

Unspecified vulnerability in Oracle Java SE 6u121, 7u111, 8u102; and Java SE Embedded 8u101 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Hotspot, a different vulnerability than CVE-2016-5582.

CVSS3: 8.3
debian
почти 9 лет назад

Unspecified vulnerability in Oracle Java SE 6u121, 7u111, 8u102; and J ...

CVSS3: 8.3
github
больше 3 лет назад

Unspecified vulnerability in Oracle Java SE 6u121, 7u111, 8u102; and Java SE Embedded 8u101 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Hotspot, a different vulnerability than CVE-2016-5582.

oracle-oval
больше 8 лет назад

ELSA-2017-0061: java-1.6.0-openjdk security update (IMPORTANT)

EPSS

Процентиль: 84%
0.02275
Низкий

7.5 High

CVSS3

5.1 Medium

CVSS2