Oracle JRockit R27 < R27.7.3.6 / R28 < R28.2.4.14 Unspecified Vulnerability (July 2012 CPU)

critical Nessus Plugin ID 78086

Synopsis

The remote Windows host contains a programming platform that is affected by an unspecified vulnerability.

Description

The remote host has a version of Oracle JRockit that is affected by an unspecified vulnerability related to the 'Multiple' protocol, which a remote attacker can exploit to impact the host's confidentiality, integrity, and availability.

Solution

Upgrade to version R27.7.3.6 / R28.2.4.14 or later as referenced in the July 2012 Oracle Critical Patch Update advisory.

See Also

http://www.nessus.org/u?07dc310c

Plugin Details

Severity: Critical

ID: 78086

File Name: oracle_jrockit_cpu_jul_2012.nasl

Version: 1.5

Type: local

Agent: windows

Family: Windows

Published: 10/8/2014

Updated: 11/15/2018

Supported Sensors: Nessus Agent, Nessus

Risk Information

VPR

Risk Factor: Medium

Score: 5.9

CVSS v2

Risk Factor: Critical

Base Score: 10

Temporal Score: 7.4

Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Information

CPE: cpe:/a:oracle:jrockit

Required KB Items: SMB/Registry/Enumerated, installed_sw/Oracle JRockit

Exploit Ease: No known exploits are available

Patch Publication Date: 7/17/2012

Vulnerability Publication Date: 7/17/2012

Reference Information

CVE: CVE-2012-3135

BID: 54494