CVE-2015-0492

HIGH
New! CVE Severity Now Using CVSS v3

The calculated severity for CVEs has been updated to use CVSS v3 by default. CVEs that do not have a CVSS v3 score will fall back CVSS v2 for calculating severity. Severity display preferences can be toggled in the settings dropdown.

Description

Unspecified vulnerability in Oracle Java SE 7u76 and 8u40, and JavaFX 2.2.76, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors, a different vulnerability than CVE-2015-0484.

References

http://lists.opensuse.org/opensuse-security-announce/2015-04/msg00017.html

http://lists.opensuse.org/opensuse-security-announce/2015-04/msg00018.html

http://lists.opensuse.org/opensuse-security-announce/2015-05/msg00002.html

http://rhn.redhat.com/errata/RHSA-2015-0854.html

http://rhn.redhat.com/errata/RHSA-2015-0857.html

http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html

http://www.securityfocus.com/bid/74129

http://www.securitytracker.com/id/1032120

https://security.gentoo.org/glsa/201603-11

Details

Source: MITRE

Published: 2015-04-16

Updated: 2020-09-08

Risk Information

CVSS v2

Base Score: 9.3

Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Impact Score: 10

Exploitability Score: 8.6

Severity: HIGH

Tenable Plugins

View all (11 total)

IDNameProductFamilySeverity
700650Oracle Java SE 5 < Update 85 / 6 < Update 95 / 7 < Update 79 / 8 < Update 45 Multiple Vulnerabilities (April 2015 CPU) (FREAK)Nessus Network MonitorWeb Clients
critical
89904GLSA-201603-11 : Oracle JRE/JDK: Multiple vulnerabilities (Logjam)NessusGentoo Local Security Checks
low
83287SuSE 11.3 Security Update : java-1_7_0-openjdk (SAT Patch Number 10621)NessusSuSE Local Security Checks
critical
83107openSUSE Security Update : java-1_8_0-openjdk (openSUSE-2015-332)NessusSuSE Local Security Checks
critical
83106openSUSE Security Update : java-1_7_0-openjdk (openSUSE-2015-331)NessusSuSE Local Security Checks
critical
82909RHEL 5 / 6 / 7 : java-1.7.0-oracle (RHSA-2015:0857)NessusRed Hat Local Security Checks
critical
82897RHEL 6 / 7 : java-1.8.0-oracle (RHSA-2015:0854)NessusRed Hat Local Security Checks
critical
82821Oracle Java SE Multiple Vulnerabilities (April 2015 CPU) (Unix) (FREAK)NessusMisc.
critical
82820Oracle Java SE Multiple Vulnerabilities (April 2015 CPU) (FREAK)NessusWindows
critical
8749Oracle Java SE 7 < Update 77 Multiple VulnerabilitiesNessus Network MonitorWeb Clients
critical
8748Oracle Java SE 8 < Update 41 Multiple VulnerabilitiesNessus Network MonitorWeb Clients
critical