PT-2016-1803 · Oracle+7 · Jrockit+10

Publicado

2016-04-20

·

Atualizado

2025-09-14

·

CVE-2016-3427

CVSS v2.0

10

Crítica

VetorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Oracle Java SE versions 6u113, 7u99, and 8u77 Java SE Embedded version 8u77 JRockit version R28.3.9
Description The issue is related to errors in the code of Jrockit and Java Platform, allowing remote attackers to affect confidentiality, integrity, and availability via vectors related to the JMX component. This can lead to a remote attacker influencing the confidentiality, integrity, and availability of information.
Recommendations For Oracle Java SE versions 6u113, 7u99, and 8u77, consider updating to a version that contains a fix for this issue. For Java SE Embedded version 8u77, consider updating to a version that contains a fix for this issue. For JRockit version R28.3.9, consider updating to a version that contains a fix for this issue. As a temporary workaround, consider restricting access to the JMX component until a patch is available.

Correção

Improper Access Control

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2016-01136
CESA-2016_0650
CESA-2016_0651
CESA-2016_0675
CESA-2016_0676
CESA-2016_0723
CVE-2016-3427
DLA-451-1
DSA-3558-1
MGASA-2016-0149
OPENSUSE-SU-2016_1222-1
OPENSUSE-SU-2016_1230-1
OPENSUSE-SU-2016_1235-1
OPENSUSE-SU-2016_1262-1
OPENSUSE-SU-2016_1265-1
OPENSUSE-SU-2024:10197-1
OPENSUSE-SU-2024:10534-1
RHSA-2016:0650
RHSA-2016:0651
RHSA-2016:0675
RHSA-2016:0676
RHSA-2016:0677
RHSA-2016:0678
RHSA-2016:0679
RHSA-2016:0701
RHSA-2016:0702
RHSA-2016:0708
RHSA-2016:0716
RHSA-2016:0723
RHSA-2016:1039
RHSA-2016:1430
RHSA-2016_0650
RHSA-2016_0651
RHSA-2016_0675
RHSA-2016_0676
RHSA-2016_0677
RHSA-2016_0678
RHSA-2016_0679
RHSA-2016_0701
RHSA-2016_0708
RHSA-2016_0716
RHSA-2016_0723
RHSA-2016_1039
RHSA-2017:1216
SUSE-SU-2016:1248-1
SUSE-SU-2016:1250-1
SUSE-SU-2016:1299-1
SUSE-SU-2016:1300-1
SUSE-SU-2016:1303-1
SUSE-SU-2016:1378-1
SUSE-SU-2016:1379-1
SUSE-SU-2016:1458-1
SUSE-SU-2016:1475-1
USN-2963-1
USN-2964-1
USN-2972-1

Produtos afetados

Apache Cassandra
Centos
Ibm Aix
Jrockit
Java Platform
Java Se
Java Se Embedded
Red Hat
Suse
Ubuntu
Vmware Vcenter