[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248268

 
 

909

 
 

195051

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CVE
view JSON

CVE-2014-2483Date: (C)2014-07-22   (M)2023-12-22


Unspecified vulnerability in the Java SE component in Oracle Java SE Java SE 7u60 and OpenJDK 7 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries, a different vulnerability than CVE-2014-4223. NOTE: the previous information is from the July 2014 CPU. Oracle has not commented on another vendor's claim that the issue is related to improper restriction of the "use of privileged annotations."

CVSS Score and Metrics +CVSS Score and Metrics -

CVSS V2 Severity:
CVSS Score : 9.3
Exploit Score: 8.6
Impact Score: 10.0
 
CVSS V2 Metrics:
Access Vector: NETWORK
Access Complexity: MEDIUM
Authentication: NONE
Confidentiality: COMPLETE
Integrity: COMPLETE
Availability: COMPLETE
  
Reference:
SECTRACK-1030577
http://www.securityfocus.com/archive/1/534161/100/0/threaded
SECUNIA-60485
SECUNIA-60812
BID-68608
DSA-2987
GLSA-201502-12
HPSBUX03091
RHSA-2014:0902
http://hg.openjdk.java.net/jdk7u/jdk7u/hotspot/rev/848481af9003
http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html
http://www.vmware.com/security/advisories/VMSA-2014-0012.html
https://bugzilla.redhat.com/show_bug.cgi?id=1119626

CPE    4
cpe:/o:redhat:enterprise_linux:5
cpe:/a:oracle:openjdk:1.7.0
cpe:/o:debian:debian_linux:7.0
cpe:/o:redhat:enterprise_linux:7.0
...
OVAL    15
oval:org.secpod.oval:def:1500614
oval:org.secpod.oval:def:1500616
oval:org.secpod.oval:def:702150
oval:org.secpod.oval:def:601729
...

© SecPod Technologies