National Vulnerability Database

National Vulnerability Database

National Vulnerability
Database

CVE-2015-0469 Detail

Description

Unspecified vulnerability in Oracle Java SE 5.0u81, 6u91, 7u76, and 8u40 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D.

Source:  MITRE      Last Modified:  04/16/2015

Evaluator Description

Per Oracle: Applies to client deployment of Java only. This vulnerability can be exploited only through sandboxed Java Web Start applications and sandboxed Java applets. (http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html)

Quick Info

CVE Dictionary Entry:
CVE-2015-0469
Original release date:
04/16/2015
Last revised:
11/03/2017
Source:
US-CERT/NIST

Impact

CVSS Severity (version 2.0):
CVSS v2 Base Score:
10.0 HIGH
Vector:
(AV:N/AC:L/Au:N/C:C/I:C/A:C) (legend)
Impact Subscore:
10.0
Exploitability Subscore:
10.0
CVSS Version 2 Metrics:
Access Vector:
Network exploitable
Access Complexity:
Low
Authentication:
Not required to exploit
Impact Type:
Allows unauthorized disclosure of information; Allows unauthorized modification; Allows disruption of service

References to Advisories, Solutions, and Tools

By selecting these links, you will be leaving NIST webspace. We have provided these links to other web sites because they may have information that would be of interest to you. No inferences should be drawn on account of other sites being referenced, or not, from this page. There may be other web sites that are more appropriate for your purpose. NIST does not necessarily endorse the views expressed, or concur with the facts presented on these sites. Further, NIST does not endorse any commercial products that may be mentioned on these sites. Please address comments about this page to nvd@nist.gov.

Hyperlink Resource Type Source Name
http://advisories.mageia.org/MGASA-2015-0158.html External Source CONFIRM http://advisories.mageia.org/MGASA-2015-0158.html
http://lists.opensuse.org/opensuse-security-announce/2015-04/msg00017.html External Source SUSE openSUSE-SU-2015:0773
http://lists.opensuse.org/opensuse-security-announce/2015-04/msg00018.html External Source SUSE openSUSE-SU-2015:0774
http://lists.opensuse.org/opensuse-security-announce/2015-05/msg00002.html External Source SUSE SUSE-SU-2015:0833
http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00014.html External Source SUSE SUSE-SU-2015:1085
http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00015.html External Source SUSE SUSE-SU-2015:1086
http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00022.html External Source SUSE SUSE-SU-2015:1138
http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00031.html External Source SUSE SUSE-SU-2015:1161
http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00000.html External Source SUSE SUSE-SU-2015:2166
http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00001.html External Source SUSE SUSE-SU-2015:2168
http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00003.html External Source SUSE SUSE-SU-2015:2182
http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00004.html External Source SUSE SUSE-SU-2015:2192
http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00006.html External Source SUSE SUSE-SU-2015:2216
http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00005.html External Source SUSE SUSE-SU-2016:0113
http://rhn.redhat.com/errata/RHSA-2015-0806.html External Source REDHAT RHSA-2015:0806
http://rhn.redhat.com/errata/RHSA-2015-0807.html External Source REDHAT RHSA-2015:0807
http://rhn.redhat.com/errata/RHSA-2015-0808.html External Source REDHAT RHSA-2015:0808
http://rhn.redhat.com/errata/RHSA-2015-0809.html External Source REDHAT RHSA-2015:0809
http://rhn.redhat.com/errata/RHSA-2015-0854.html External Source REDHAT RHSA-2015:0854
http://rhn.redhat.com/errata/RHSA-2015-0857.html External Source REDHAT RHSA-2015:0857
http://rhn.redhat.com/errata/RHSA-2015-0858.html External Source REDHAT RHSA-2015:0858
http://rhn.redhat.com/errata/RHSA-2015-1006.html External Source REDHAT RHSA-2015:1006
http://rhn.redhat.com/errata/RHSA-2015-1007.html External Source REDHAT RHSA-2015:1007
http://rhn.redhat.com/errata/RHSA-2015-1020.html External Source REDHAT RHSA-2015:1020
http://rhn.redhat.com/errata/RHSA-2015-1021.html External Source REDHAT RHSA-2015:1021
http://rhn.redhat.com/errata/RHSA-2015-1091.html External Source REDHAT RHSA-2015:1091
http://www.debian.org/security/2015/dsa-3234 External Source DEBIAN DSA-3234
http://www.debian.org/security/2015/dsa-3235 External Source DEBIAN DSA-3235
http://www.debian.org/security/2015/dsa-3316 External Source DEBIAN DSA-3316
http://www.mandriva.com/security/advisories?name=MDVSA-2015:212 External Source MANDRIVA MDVSA-2015:212
http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html Vendor Advisory External Source CONFIRM http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html
http://www.securityfocus.com/bid/74072 External Source BID 74072
http://www.securitytracker.com/id/1032120 External Source SECTRACK 1032120
http://www.ubuntu.com/usn/USN-2573-1 External Source UBUNTU USN-2573-1
http://www.ubuntu.com/usn/USN-2574-1 External Source UBUNTU USN-2574-1
http://www-01.ibm.com/support/docview.wss?uid=swg21883640 External Source CONFIRM http://www-01.ibm.com/support/docview.wss?uid=swg21883640
https://security.gentoo.org/glsa/201603-11 External Source GENTOO GLSA-201603-11

Technical Details

Vulnerability Type (View All)

Change History 11 change records found - show changes