CVE-2014-2401
published 2014-04-16CVE-2014-2401: Unspecified vulnerability in Oracle Java SE 5.0u61, 6u71, 7u51, and 8; JavaFX 2.2.51; and Java SE Embedded 7u51 allows remote attackers to affect…
PriorityP427medium5CVSS 2.0
AVNACLAuNCPINAN
EPSS
3.54%
88.1th percentile
Unspecified vulnerability in Oracle Java SE 5.0u61, 6u71, 7u51, and 8; JavaFX 2.2.51; and Java SE Embedded 7u51 allows remote attackers to affect confidentiality via unknown vectors related to 2D.
Affected
11 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| ibm | forms_viewer | >= 4.0.0 < 4.0.0.3 | 4.0.0.3 |
| ibm | forms_viewer | >= 8.0.0 < 8.0.1.1 | 8.0.1.1 |
| oracle | javafx | — | — |
| oracle | jdk | — | — |
| oracle | jdk | — | — |
| oracle | jdk | — | — |
| oracle | jdk | — | — |
| oracle | jre | — | — |
| oracle | jre | — | — |
| oracle | jre | — | — |
| oracle | jre | — | — |
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
vendor_redhat5.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
JDK: unspecified vulnerability fixed in 5.0u75, 6u75, 7u55 and 8u5 (2D)
vendor_redhat·2014-04-15·CVSS 5.0
CVE-2014-2401 [MEDIUM] JDK: unspecified vulnerability fixed in 5.0u75, 6u75, 7u55 and 8u5 (2D)
JDK: unspecified vulnerability fixed in 5.0u75, 6u75, 7u55 and 8u5 (2D)
Unspecified vulnerability in Oracle Java SE 5.0u61, 6u71, 7u51, and 8; JavaFX 2.2.51; and Java SE Embedded 7u51 allows remote attackers to affect confidentiality via unknown vectors related to 2D.
Package: java-1.6.0-sun (Red Hat Enterprise Linux 7) - Not affected
Package: java-1.7.0-oracle (Red Hat Enterprise Linux 7) - Not affected
VulDB
Oracle Java SE/JavaFX/Java SE Embedded 5.0u61/6u71/7u51/8 2D information disclosure (Nessus ID 73570 / ID 185086)
vuldb·2026-05-11·CVSS 5.0
CVE-2014-2401 [MEDIUM] Oracle Java SE/JavaFX/Java SE Embedded 5.0u61/6u71/7u51/8 2D information disclosure (Nessus ID 73570 / ID 185086)
A vulnerability, which was classified as problematic, was found in Oracle Java SE, JavaFX and Java SE Embedded 5.0u61/6u71/7u51/8. Impacted is an unknown function of the component 2D. Executing a manipulation can lead to information disclosure.
This vulnerability is tracked as CVE-2014-2401. The attack can be launched remotely. No exploit exists.
You should upgrade the affected component.
GHSA
GHSA-c277-m7f2-cgrx: Unspecified vulnerability in Oracle Java SE 5
ghsa_unreviewed·2022-05-10
CVE-2014-2401 [MEDIUM] GHSA-c277-m7f2-cgrx: Unspecified vulnerability in Oracle Java SE 5
Unspecified vulnerability in Oracle Java SE 5.0u61, 6u71, 7u51, and 8; JavaFX 2.2.51; and Java SE Embedded 7u51 allows remote attackers to affect confidentiality via unknown vectors related to 2D.
No detection rules found.
No public exploits indexed.
http://marc.info/?l=bugtraq&m=140852886808946&w=2http://marc.info/?l=bugtraq&m=140852974709252&w=2http://secunia.com/advisories/58974http://secunia.com/advisories/59058http://security.gentoo.org/glsa/glsa-201502-12.xmlhttp://www-01.ibm.com/support/docview.wss?uid=swg21672080http://www-01.ibm.com/support/docview.wss?uid=swg21676746http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.htmlhttp://www.securityfocus.com/bid/66911https://access.redhat.com/errata/RHSA-2014:0413https://access.redhat.com/errata/RHSA-2014:0414https://www.ibm.com/support/docview.wss?uid=swg21675973http://marc.info/?l=bugtraq&m=140852886808946&w=2http://marc.info/?l=bugtraq&m=140852974709252&w=2http://secunia.com/advisories/58974http://secunia.com/advisories/59058http://security.gentoo.org/glsa/glsa-201502-12.xmlhttp://www-01.ibm.com/support/docview.wss?uid=swg21672080http://www-01.ibm.com/support/docview.wss?uid=swg21676746http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.htmlhttp://www.securityfocus.com/bid/66911https://access.redhat.com/errata/RHSA-2014:0413https://access.redhat.com/errata/RHSA-2014:0414https://www.ibm.com/support/docview.wss?uid=swg21675973
2014-04-16
Published