CVE-2014-4227

HIGH

Description

Unspecified vulnerability in Oracle Java SE 6u75, 7u60, and 8u5 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment.

References

http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00026.html

http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00036.html

http://marc.info/?l=bugtraq&m=140852974709252&w=2

http://rhn.redhat.com/errata/RHSA-2015-0264.html

http://seclists.org/fulldisclosure/2014/Dec/23

http://secunia.com/advisories/59404

http://secunia.com/advisories/59680

http://secunia.com/advisories/59924

http://secunia.com/advisories/59986

http://secunia.com/advisories/59987

http://secunia.com/advisories/60081

http://secunia.com/advisories/60245

http://secunia.com/advisories/60317

http://secunia.com/advisories/60622

http://secunia.com/advisories/60817

http://secunia.com/advisories/61577

http://secunia.com/advisories/61640

http://security.gentoo.org/glsa/glsa-201502-12.xml

http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html

http://www.securityfocus.com/archive/1/534161/100/0/threaded

http://www.securityfocus.com/bid/68603

http://www.securitytracker.com/id/1030577

http://www.vmware.com/security/advisories/VMSA-2014-0012.html

http://www-01.ibm.com/support/docview.wss?uid=swg21680334

http://www-01.ibm.com/support/docview.wss?uid=swg21686383

http://www-01.ibm.com/support/docview.wss?uid=swg21686824

https://access.redhat.com/errata/RHSA-2014:0902

https://access.redhat.com/errata/RHSA-2014:0908

https://exchange.xforce.ibmcloud.com/vulnerabilities/94588

Details

Source: MITRE

Published: 2014-07-17

Updated: 2020-09-08

Risk Information

CVSS v2.0

Base Score: 10

Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Impact Score: 10

Exploitability Score: 10

Severity: HIGH

Tenable Plugins

View all (16 total)

IDNameProductFamilySeverity
81505RHEL 5 / 6 : Red Hat Satellite IBM Java Runtime (RHSA-2015:0264) (POODLE)NessusRed Hat Local Security Checks
critical
81370GLSA-201502-12 : Oracle JRE/JDK: Multiple vulnerabilitiesNessusGentoo Local Security Checks
critical
79865VMware Security Updates for vCenter Server (VMSA-2014-0012)NessusMisc.
critical
79864VMware vCenter Update Manager Multiple Java Vulnerabilities (VMSA-2014-0012)NessusWindows
critical
79109RHEL 5 / 6 / 7 : java-1.6.0-sun (RHSA-2014:0908)NessusRed Hat Local Security Checks
critical
79036RHEL 5 / 6 / 7 : java-1.7.0-oracle (RHSA-2014:0902)NessusRed Hat Local Security Checks
critical
77333AIX Java Advisory : java_jul2014_advisory.ascNessusAIX Local Security Checks
critical
77319SuSE 11.3 Security Update : IBM Java (SAT Patch Number 9615)NessusSuSE Local Security Checks
critical
77282Puppet Enterprise 3.3.0 Bundled Oracle Java VulnerabilitiesNessusCGI abuses
critical
77273SuSE 11.3 Security Update : IBM Java 1.7.0 (SAT Patch Number 9616)NessusSuSE Local Security Checks
critical
77143RHEL 7 : java-1.7.1-ibm (RHSA-2014:1042)NessusRed Hat Local Security Checks
critical
77142RHEL 5 / 6 : java-1.7.0-ibm (RHSA-2014:1041)NessusRed Hat Local Security Checks
critical
77081RHEL 5 / 6 : java-1.6.0-ibm (RHSA-2014:1033)NessusRed Hat Local Security Checks
critical
76998SuSE 11.3 Security Update : openjdk (SAT Patch Number 9543)NessusSuSE Local Security Checks
critical
76533Oracle Java SE Multiple Vulnerabilities (July 2014 CPU) (Unix)NessusMisc.
critical
76532Oracle Java SE Multiple Vulnerabilities (July 2014 CPU)NessusWindows
critical