PT-2014-1616 · Oracle+6 · Jrockit+8
Published
2014-07-16
·
Updated
2024-06-15
·
CVE-2014-4263
CVSS v2.0
4.0
Medium
| Vector | AV:N/AC:H/Au:N/C:P/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
Java SE versions 5.0u65, 6u75, 7u60, and 8u5
JRockit versions R27.8.2 and R28.3.2
Description
The issue allows a remote attacker to compromise data confidentiality and integrity using Diffie-Hellman key agreement.
Recommendations
For Java SE versions 5.0u65, 6u75, 7u60, and 8u5, update to a version that is not affected by this issue.
For JRockit versions R27.8.2 and R28.3.2, update to a version that is not affected by this issue.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Centos
Hp-Ux
Ibm Aix
Jrockit
Java Platform
Java Se
Red Hat
Suse
Ubuntu