CVE-2014-8873

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
09/11/2015
Last modified:
12/04/2025

Description

A .desktop file in the Debian openjdk-7 package 7u79-2.5.5-1~deb8u1 includes a MIME type registration that is added to /etc/mailcap by mime-support, which allows remote attackers to execute arbitrary code via a JAR file.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:oracle:openjdk:1.7.0:*:*:*:*:*:*:*