Vulnerabilidad en Oracle Java SE y JRockit (CVE-2014-4263)
Gravedad CVSS v2.0:
MEDIA
Tipo:
No Disponible / Otro tipo
Fecha de publicación:
17/07/2014
Última modificación:
12/04/2025
Descripción
Vulnerabilidad no especificada en Oracle Java SE 5.0u65, 6u75, 7u60, y 8u5, y JRockit R27.8.2 y R28.3.2, permite a atacantes remotos afectar a la confidencialidad y la integridad a través de vectores desconocidos relacionados con el 'Acuerdo de Claves Diffie-Hellman'
Impacto
Puntuación base 2.0
4.00
Gravedad 2.0
MEDIA
Productos y versiones vulnerables
| CPE | Desde | Hasta |
|---|---|---|
| cpe:2.3:a:oracle:jrockit:r27.8.2:*:*:*:*:*:*:* | ||
| cpe:2.3:a:oracle:jrockit:r28.3.2:*:*:*:*:*:*:* | ||
| cpe:2.3:a:oracle:jdk:1.5.0:update65:*:*:*:*:*:* | ||
| cpe:2.3:a:oracle:jdk:1.6.0:update75:*:*:*:*:*:* | ||
| cpe:2.3:a:oracle:jdk:1.7.0:update60:*:*:*:*:*:* | ||
| cpe:2.3:a:oracle:jdk:1.8.0:update5:*:*:*:*:*:* | ||
| cpe:2.3:a:oracle:jre:1.5.0:update65:*:*:*:*:*:* | ||
| cpe:2.3:a:oracle:jre:1.6.0:update75:*:*:*:*:*:* | ||
| cpe:2.3:a:oracle:jre:1.7.0:update60:*:*:*:*:*:* | ||
| cpe:2.3:a:oracle:jre:1.8.0:update5:*:*:*:*:*:* |
Para consultar la lista completa de nombres de CPE con productos y versiones, ver esta página
Referencias a soluciones, herramientas e información
- http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00026.html
- http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00033.html
- http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00036.html
- http://marc.info/?l=bugtraq&m=140852886808946&w=2
- http://marc.info/?l=bugtraq&m=140852886808946&w=2
- http://marc.info/?l=bugtraq&m=140852974709252&w=2
- http://marc.info/?l=bugtraq&m=140852974709252&w=2
- http://rhn.redhat.com/errata/RHSA-2015-0264.html
- http://seclists.org/fulldisclosure/2014/Dec/23
- http://secunia.com/advisories/58830
- http://secunia.com/advisories/59404
- http://secunia.com/advisories/59503
- http://secunia.com/advisories/59680
- http://secunia.com/advisories/59924
- http://secunia.com/advisories/59985
- http://secunia.com/advisories/59986
- http://secunia.com/advisories/59987
- http://secunia.com/advisories/60002
- http://secunia.com/advisories/60031
- http://secunia.com/advisories/60032
- http://secunia.com/advisories/60081
- http://secunia.com/advisories/60129
- http://secunia.com/advisories/60180
- http://secunia.com/advisories/60245
- http://secunia.com/advisories/60317
- http://secunia.com/advisories/60326
- http://secunia.com/advisories/60335
- http://secunia.com/advisories/60485
- http://secunia.com/advisories/60497
- http://secunia.com/advisories/60622
- http://secunia.com/advisories/60812
- http://secunia.com/advisories/60817
- http://secunia.com/advisories/60831
- http://secunia.com/advisories/60839
- http://secunia.com/advisories/60846
- http://secunia.com/advisories/60890
- http://secunia.com/advisories/61215
- http://secunia.com/advisories/61254
- http://secunia.com/advisories/61264
- http://secunia.com/advisories/61278
- http://secunia.com/advisories/61293
- http://secunia.com/advisories/61294
- http://secunia.com/advisories/61469
- http://secunia.com/advisories/61577
- http://secunia.com/advisories/61640
- http://secunia.com/advisories/61846
- http://secunia.com/advisories/62314
- http://secunia.com/advisories/62319
- http://security.gentoo.org/glsa/glsa-201502-12.xml
- http://www-01.ibm.com/support/docview.wss?uid=swg21680334
- http://www-01.ibm.com/support/docview.wss?uid=swg21681379
- http://www-01.ibm.com/support/docview.wss?uid=swg21681966
- http://www-01.ibm.com/support/docview.wss?uid=swg21683338
- http://www-01.ibm.com/support/docview.wss?uid=swg21683429
- http://www-01.ibm.com/support/docview.wss?uid=swg21683438
- http://www-01.ibm.com/support/docview.wss?uid=swg21683484
- http://www-01.ibm.com/support/docview.wss?uid=swg21685121
- http://www-01.ibm.com/support/docview.wss?uid=swg21685122
- http://www-01.ibm.com/support/docview.wss?uid=swg21685178
- http://www-01.ibm.com/support/docview.wss?uid=swg21685242
- http://www-01.ibm.com/support/docview.wss?uid=swg21686142
- http://www-01.ibm.com/support/docview.wss?uid=swg21686383
- http://www-01.ibm.com/support/docview.wss?uid=swg21686824
- http://www-01.ibm.com/support/docview.wss?uid=swg21688893
- http://www-01.ibm.com/support/docview.wss?uid=swg21689593
- http://www-01.ibm.com/support/docview.wss?uid=swg21691089
- http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096529
- http://www.debian.org/security/2014/dsa-2980
- http://www.debian.org/security/2014/dsa-2987
- http://www.ibm.com/support/docview.wss?uid=swg21681644
- http://www.ibm.com/support/docview.wss?uid=swg21683518
- http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html
- http://www.securityfocus.com/archive/1/534161/100/0/threaded
- http://www.securityfocus.com/bid/68636
- http://www.securitytracker.com/id/1030577
- http://www.vmware.com/security/advisories/VMSA-2014-0012.html
- https://access.redhat.com/errata/RHSA-2014:0902
- https://access.redhat.com/errata/RHSA-2014:0908
- https://exchange.xforce.ibmcloud.com/vulnerabilities/94606
- https://kc.mcafee.com/corporate/index?page=content&id=SB10083
- https://www.ibm.com/support/docview.wss?uid=swg21680418
- http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00026.html
- http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00033.html
- http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00036.html
- http://marc.info/?l=bugtraq&m=140852886808946&w=2
- http://marc.info/?l=bugtraq&m=140852886808946&w=2
- http://marc.info/?l=bugtraq&m=140852974709252&w=2
- http://marc.info/?l=bugtraq&m=140852974709252&w=2
- http://rhn.redhat.com/errata/RHSA-2015-0264.html
- http://seclists.org/fulldisclosure/2014/Dec/23
- http://secunia.com/advisories/58830
- http://secunia.com/advisories/59404
- http://secunia.com/advisories/59503
- http://secunia.com/advisories/59680
- http://secunia.com/advisories/59924
- http://secunia.com/advisories/59985
- http://secunia.com/advisories/59986
- http://secunia.com/advisories/59987
- http://secunia.com/advisories/60002
- http://secunia.com/advisories/60031
- http://secunia.com/advisories/60032
- http://secunia.com/advisories/60081
- http://secunia.com/advisories/60129
- http://secunia.com/advisories/60180
- http://secunia.com/advisories/60245
- http://secunia.com/advisories/60317
- http://secunia.com/advisories/60326
- http://secunia.com/advisories/60335
- http://secunia.com/advisories/60485
- http://secunia.com/advisories/60497
- http://secunia.com/advisories/60622
- http://secunia.com/advisories/60812
- http://secunia.com/advisories/60817
- http://secunia.com/advisories/60831
- http://secunia.com/advisories/60839
- http://secunia.com/advisories/60846
- http://secunia.com/advisories/60890
- http://secunia.com/advisories/61215
- http://secunia.com/advisories/61254
- http://secunia.com/advisories/61264
- http://secunia.com/advisories/61278
- http://secunia.com/advisories/61293
- http://secunia.com/advisories/61294
- http://secunia.com/advisories/61469
- http://secunia.com/advisories/61577
- http://secunia.com/advisories/61640
- http://secunia.com/advisories/61846
- http://secunia.com/advisories/62314
- http://secunia.com/advisories/62319
- http://security.gentoo.org/glsa/glsa-201502-12.xml
- http://www-01.ibm.com/support/docview.wss?uid=swg21680334
- http://www-01.ibm.com/support/docview.wss?uid=swg21681379
- http://www-01.ibm.com/support/docview.wss?uid=swg21681966
- http://www-01.ibm.com/support/docview.wss?uid=swg21683338
- http://www-01.ibm.com/support/docview.wss?uid=swg21683429
- http://www-01.ibm.com/support/docview.wss?uid=swg21683438
- http://www-01.ibm.com/support/docview.wss?uid=swg21683484
- http://www-01.ibm.com/support/docview.wss?uid=swg21685121
- http://www-01.ibm.com/support/docview.wss?uid=swg21685122
- http://www-01.ibm.com/support/docview.wss?uid=swg21685178
- http://www-01.ibm.com/support/docview.wss?uid=swg21685242
- http://www-01.ibm.com/support/docview.wss?uid=swg21686142
- http://www-01.ibm.com/support/docview.wss?uid=swg21686383
- http://www-01.ibm.com/support/docview.wss?uid=swg21686824
- http://www-01.ibm.com/support/docview.wss?uid=swg21688893
- http://www-01.ibm.com/support/docview.wss?uid=swg21689593
- http://www-01.ibm.com/support/docview.wss?uid=swg21691089
- http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096529
- http://www.debian.org/security/2014/dsa-2980
- http://www.debian.org/security/2014/dsa-2987
- http://www.ibm.com/support/docview.wss?uid=swg21681644
- http://www.ibm.com/support/docview.wss?uid=swg21683518
- http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html
- http://www.securityfocus.com/archive/1/534161/100/0/threaded
- http://www.securityfocus.com/bid/68636
- http://www.securitytracker.com/id/1030577
- http://www.vmware.com/security/advisories/VMSA-2014-0012.html
- https://access.redhat.com/errata/RHSA-2014:0902
- https://access.redhat.com/errata/RHSA-2014:0908
- https://exchange.xforce.ibmcloud.com/vulnerabilities/94606
- https://kc.mcafee.com/corporate/index?page=content&id=SB10083
- https://www.ibm.com/support/docview.wss?uid=swg21680418



