PT-2014-1254 · Oracle+4 · Java Se Embedded+7

Publicado

2014-01-15

·

Atualizado

2022-05-13

·

CVE-2014-0417

CVSS v2.0

9.3

Alta

VetorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Java SE versions 5.0u55, 6u65, and 7u45 JavaFX version 2.2.45 Java SE Embedded version 7u45
Description The issue allows remote attackers to affect confidentiality, integrity, and availability of data using the 2D subcomponent. This can be exploited by remote attackers to disrupt the security of the system.
Recommendations For Java SE versions 5.0u55, 6u65, and 7u45, update to a version that is not affected by this issue. For JavaFX version 2.2.45, update to a version that is not affected by this issue. For Java SE Embedded version 7u45, update to a version that is not affected by this issue. As a temporary workaround, consider restricting access to the 2D subcomponent until a patch is available.

Exploit

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2014-00475
BDU:2014-00476
CVE-2014-0417
HPSBUX02972
HPSBUX02973
RHSA-2014:0030
RHSA-2014:0134
RHSA-2014:0135
RHSA-2014:0136
RHSA-2014:0414
RHSA-2014:0705
RHSA-2014:0982
RHSA-2014_0030
RHSA-2014_0134
RHSA-2014_0135
RHSA-2014_0136
RHSA-2014_0414
RHSA-2014_0705

Produtos afetados

Hp-Ux
Ibm Aix
Java Platform
Java Se
Java Se Embedded
Javafx
Red Hat
Suse