[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248038

 
 

909

 
 

194772

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

ELSA-2016-1458 -- Oracle java-1.8.0-openjdk

ID: oval:org.secpod.oval:def:1501517Date: (C)2016-07-26   (M)2023-12-20
Class: PATCHFamily: unix




The java-1.8.0-openjdk packages provide the OpenJDK 8 Java Runtime Environment and the OpenJDK 8 Java Software Development Kit. Security Fix: * Multiple flaws were discovered in the Hotspot and Libraries components in OpenJDK. An untrusted Java application or applet could use these flaws to completely bypass Java sandbox restrictions. * Multiple denial of service flaws were found in the JAXP component in OpenJDK. A specially crafted XML file could cause a Java application using JAXP to consume an excessive amount of CPU and memory when parsed. * Multiple flaws were found in the CORBA and Hotsport components in OpenJDK. An untrusted Java application or applet could use these flaws to bypass certain Java sandbox restrictions. Note: If the web browser plug-in provided by the icedtea-web package was installed, the issues exposed via Java applets could have been exploited without user interaction if a user visited a malicious website.

Platform:
Oracle Linux 6
Product:
java-1.8.0-openjdk
Reference:
ELSA-2016-1458
CVE-2016-3500
CVE-2016-3610
CVE-2016-3606
CVE-2016-3550
CVE-2016-3598
CVE-2016-3508
CVE-2016-3458
CVE-2016-3587
CVE    8
CVE-2016-3587
CVE-2016-3500
CVE-2016-3610
CVE-2016-3458
...
CPE    2
cpe:/a:oracle:java-1.8.0-openjdk
cpe:/o:oracle:linux:6

© SecPod Technologies