PT-2016-6549 · Oracle+5 · Oracle Java Se+7
Published
2016-10-19
·
Updated
2024-06-15
·
CVE-2016-5573
CVSS v3.1
8.3
High
| Vector | AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Oracle Java SE versions 6u121, 7u111, 8u102
Oracle Java SE Embedded version 8u101
Description
The issue affects confidentiality, integrity, and availability. It is related to the Hotspot component in Oracle Java SE and to the Libraries component in Oracle Java SE and Java SE Embedded. The vulnerability allows remote attackers to exploit the issue via related vectors.
Recommendations
For Oracle Java SE versions 6u121, 7u111, 8u102, update to a version that addresses this issue.
For Oracle Java SE Embedded version 8u101, update to a version that addresses this issue.
As a temporary workaround, consider restricting access to the Hotspot component until a patch is available.
Avoid using the Libraries component in Oracle Java SE and Java SE Embedded until the issue is resolved.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Centos
Ibm Aix
Java Platform
Java Se Embedded
Oracle Java Se
Red Hat
Suse
Ubuntu