PT-2016-4116 · Ibm+2 · Ibm Sdk+3
Publicado
2016-04-29
·
Atualizado
2021-09-09
·
CVE-2016-0264
CVSS v2.0
6.8
Média
| Vetor | AV:N/AC:M/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
IBM SDK, Java Technology Edition versions 6.0.0 through 6.0.16.24
IBM SDK, Java Technology Edition 6 R1 versions 6.1.0 through 6.1.8.24
IBM SDK, Java Technology Edition 7 versions 7.0.0 through 7.0.9.39
IBM SDK, Java Technology Edition 7 R1 versions 7.1.0 through 7.1.3.39
IBM SDK, Java Technology Edition 8 versions 8.0.0 through 8.0.2.0
Description
A buffer overflow in the Java Virtual Machine (JVM) allows remote attackers to execute arbitrary code via unspecified vectors. This issue also enables code running under a security manager to escalate its privileges by modifying or removing the security manager.
Recommendations
For IBM SDK, Java Technology Edition 6, update to version 6.0.16.25 or later.
For IBM SDK, Java Technology Edition 6 R1, update to version 6.1.8.25 or later.
For IBM SDK, Java Technology Edition 7, update to version 7.0.9.40 or later.
For IBM SDK, Java Technology Edition 7 R1, update to version 7.1.3.40 or later.
For IBM SDK, Java Technology Edition 8, update to version 8.0.3.0 or later.
Correção
RCE
Buffer Overflow
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Ibm Aix
Ibm Sdk
Red Hat
Suse