[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248364

 
 

909

 
 

195388

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

ALAS-2016-748 ---- java-1.6.0-openjdk

ID: oval:org.secpod.oval:def:1600449Date: (C)2016-09-21   (M)2023-12-20
Class: PATCHFamily: unix




An insufficient bytecode verification flaw was discovered in the Hotspot component in OpenJDK. An untrusted Java application or applet could use this flaw to completely bypass Java sandbox restrictions. Multiple denial of service flaws were found in the JAXP component in OpenJDK. A specially crafted XML file could cause a Java application using JAXP to consume an excessive amount of CPU and memory when parsed. Multiple flaws were found in the CORBA and Hotsport components in OpenJDK. An untrusted Java application or applet could use these flaws to bypass certain Java sandbox restrictions

Platform:
Amazon Linux AMI
Product:
java-1.6.0-openjdk
Reference:
ALAS-2016-748
CVE-2016-3550
CVE-2016-3606
CVE-2016-3458
CVE-2016-3500
CVE-2016-3508
CVE    5
CVE-2016-3500
CVE-2016-3458
CVE-2016-3550
CVE-2016-3606
...
CPE    2
cpe:/o:amazon:linux
cpe:/a:oracle:java-1.6.0-openjdk

© SecPod Technologies