PT-2014-1645 · Oracle+5 · Java Se+7
Published
2014-07-16
·
Updated
2024-06-15
·
CVE-2014-2483
CVSS v2.0
9.3
High
| Vector | AV:N/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Java SE versions 7u60
OpenJDK version 7
Description
The issue allows a remote attacker to compromise the confidentiality, integrity, and availability of data. It is related to the Libraries subcomponent. The estimated number of potentially affected devices is not specified. Details about real-world incidents where this issue was exploited are not provided.
Recommendations
For Java SE version 7u60, update to a version that includes the fix for this issue.
For OpenJDK version 7, update to a version that includes the fix for this issue.
As a temporary workaround, consider restricting access to the Libraries subcomponent until a patch is available.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Centos
Hp-Ux
Java Platform
Java Se
Openjdk
Red Hat
Suse
Ubuntu