CVE-2014-0461

10 documents7 sources
Severity
9.3CRITICAL
EPSS
10.1%
top 6.93%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 16
Latest updateMay 10

Description

Unspecified vulnerability in Oracle Java SE 6u71, 7u51, and 8, and Java SE Embedded 7u51, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries.

CVSS vector

AV:N/AC:M/C:C/I:C/A:CExploitability: 8.6 | Impact: 10.0

Affected Packages4 packages

NVDoracle/jdk1.6.0, 1.7.0, 1.8.0+2
NVDoracle/jre1.6.0, 1.7.0, 1.8.0+2
NVDibm/forms_viewer4.0.04.0.0.3+1
Ubuntuopenjdk-7< 7u55-2.4.7-1ubuntu1

Also affects: Debian Linux 6.0, 7.0, 8.0, Ubuntu Linux 10.04, 12.04, 12.10, 13.10, 14.04

🔴Vulnerability Details

4
GHSA
GHSA-jhjq-483p-7vc6: Unspecified vulnerability in Oracle Java SE 6u71, 7u51, and 8, and Java SE Embedded 7u51, allows remote attackers to affect confidentiality, integrity2022-05-10
OSV
openjdk-7 vulnerabilities2014-04-30
CVEList
CVE-2014-0461: Unspecified vulnerability in Oracle Java SE 6u71, 7u51, and 8, and Java SE Embedded 7u51, allows remote attackers to affect confidentiality, integrity2014-04-16
OSV
CVE-2014-0461: Unspecified vulnerability in Oracle Java SE 6u71, 7u51, and 8, and Java SE Embedded 7u51, allows remote attackers to affect confidentiality, integrity2014-04-15

📋Vendor Advisories

3
Ubuntu
OpenJDK 6 vulnerabilities2014-05-01
Ubuntu
OpenJDK 7 vulnerabilities2014-04-30
Red Hat
OpenJDK: Better ScriptEngineManager ScriptEngine management (Libraries, 8036794)2014-04-15

💬Community

2
Bugzilla
CVE-2014-0461 OpenJDK: Better ScriptEngineManager ScriptEngine management (Libraries, 8036794)2014-04-14
Bugzilla
CVE-2014-0164 mcollective: world readable client config2014-04-03
CVE-2014-0461 (CRITICAL CVSS 9.3) | Unspecified vulnerability in Oracle | cvebase.io