Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2016-5573

Опубликовано: 18 окт. 2016
Источник: redhat
CVSS3: 7.5
CVSS2: 5.1

Описание

Unspecified vulnerability in Oracle Java SE 6u121, 7u111, 8u102; and Java SE Embedded 8u101 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Hotspot, a different vulnerability than CVE-2016-5582.

It was discovered that the Hotspot component of OpenJDK did not properly check received Java Debug Wire Protocol (JDWP) packets. An attacker could possibly use this flaw to send debugging commands to a Java program running with debugging enabled if they could make victim's browser send HTTP requests to the JDWP port of the debugged application.

Дополнительная информация

Статус:

Important
Дефект:
CWE-20
https://bugzilla.redhat.com/show_bug.cgi?id=1385544OpenJDK: insufficient checks of JDWP packets (Hotspot, 8159519)

7.5 High

CVSS3

5.1 Medium

CVSS2

Связанные уязвимости

CVSS3: 8.3
ubuntu
больше 9 лет назад

Unspecified vulnerability in Oracle Java SE 6u121, 7u111, 8u102; and Java SE Embedded 8u101 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Hotspot, a different vulnerability than CVE-2016-5582.

CVSS3: 8.3
nvd
больше 9 лет назад

Unspecified vulnerability in Oracle Java SE 6u121, 7u111, 8u102; and Java SE Embedded 8u101 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Hotspot, a different vulnerability than CVE-2016-5582.

CVSS3: 8.3
debian
больше 9 лет назад

Unspecified vulnerability in Oracle Java SE 6u121, 7u111, 8u102; and J ...

CVSS3: 8.3
github
больше 3 лет назад

Unspecified vulnerability in Oracle Java SE 6u121, 7u111, 8u102; and Java SE Embedded 8u101 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Hotspot, a different vulnerability than CVE-2016-5582.

oracle-oval
около 9 лет назад

ELSA-2017-0061: java-1.6.0-openjdk security update (IMPORTANT)

7.5 High

CVSS3

5.1 Medium

CVSS2