CVE-2014-6558Oracle JDK vulnerability

11 documents8 sources
Severity
2.6LOWNVD
OSV4.0
EPSS
3.0%
top 13.37%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 15
Latest updateMay 13

Description

Unspecified vulnerability in Oracle Java SE 5.0u71, 6u81, 7u67, and 8u20; Java SE Embedded 7u60; and JRockit R27.8.3 and JRockit R28.3.3 allows remote attackers to affect integrity via unknown vectors related to Security.

CVSS vector

AV:N/AC:H/C:N/I:P/A:NExploitability: 4.9 | Impact: 2.9

Affected Packages3 packages

NVDoracle/jrockitr27.8.3, r28.3.3+1
NVDoracle/jdk1.5.0, 1.6.0, 1.7.0+2
NVDoracle/jre4 versions+3

Patches

🔴Vulnerability Details

4
GHSA
GHSA-x23w-8crm-5546: Unspecified vulnerability in Oracle Java SE 52022-05-13
OSV
openjdk-7 vulnerabilities2014-10-23
OSV
CVE-2014-6558: Unspecified vulnerability in Oracle Java SE 52014-10-15
CVEList
CVE-2014-6558: Unspecified vulnerability in Oracle Java SE 52014-10-15

📋Vendor Advisories

5
Ubuntu
OpenJDK 7 vulnerabilities2014-10-23
Ubuntu
OpenJDK 7 vulnerabilities2014-10-23
Ubuntu
OpenJDK 6 vulnerabilities2014-10-17
Red Hat
OpenJDK: CipherInputStream incorrect exception handling (Security, 8037846)2014-10-14
Debian
CVE-2014-6558: openjdk-8 - Unspecified vulnerability in Oracle Java SE 5.0u71, 6u81, 7u67, and 8u20; Java S...2014

💬Community

1
Bugzilla
CVE-2014-6558 OpenJDK: CipherInputStream incorrect exception handling (Security, 8037846)2014-10-09
CVE-2014-6558 — Oracle JDK vulnerability | cvebase