Unspecified vulnerability in IBM Java 8 before SR1, 7 R1 before SR2 FP11, 7 before SR9, 6 R1 before SR8 FP4, 6 before SR16 FP4, and 5.0 before SR16 FP10 allows remote attackers to gain privileges via unknown vectors related to the Java Virtual Machine.
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HIBM Java
APPIbm5.0.0.0 – 5.0.16.10 (excl.)6.0.0.0 – 6.0.16.46.1.0.0 – 6.1.8.4 (excl.)7.0.0.0 – 7.0.97.1.0.0 – 7.1.2.11 (excl.)8.0 – 8.0.1.0 (excl.)Red Hat Enterprise Linux Desktop
OSRedhat5.06.07.0Red Hat Enterprise Linux Server
OSRedhat5.06.07.0Red Hat Enterprise Linux Server Aus
OSRedhat6.6Red Hat Enterprise Linux Server Eus
OSRedhat6.67.17.27.37.47.5Red Hat Enterprise Linux Workstation
OSRedhat5.06.07.0SUSE Linux Enterprise Server
OSSuse101112SUSE Linux Enterprise Software Development Kit
OSSuse12
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
References
Related vulnerabilities
CVE-2021-40438CRITICAL9.0⚠ KEVPL ✓same product
SSRF w mod_proxy Apache HTTP Server — przekierowanie żądań przez atakującego
CVE-2019-5544CRITICAL9.8⚠ KEVPL ✓same product
Krytyczny heap overwrite w OpenSLP dla VMware ESXi i Horizon DaaS
CVE-2016-4171CRITICAL9.8⚠ KEVPL ✓same product
RCE w Adobe Flash Player 21.0.0.242 i wcześniejszych — aktywnie exploitowany
CVE-2016-4117CRITICAL9.8⚠ KEVPL ✓same product
Adobe Flash Player — RCE umożliwiający wykonanie dowolnego kodu
CVE-2016-3427CRITICAL9.8⚠ KEVPL ✓same product
Krytyczna podatność RCE w Oracle Java SE i JRockit — komponent JMX