CVE-2015-0470
published 2015-04-16CVE-2015-0470: Unspecified vulnerability in Oracle Java SE 8u40 allows remote attackers to affect integrity via unknown vectors related to Hotspot.
PriorityP424medium4.3CVSS 2.0
AVNACMAuNCNIPAN
EPSS
3.12%
86.4th percentile
Unspecified vulnerability in Oracle Java SE 8u40 allows remote attackers to affect integrity via unknown vectors related to Hotspot.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | openjdk-8 | < openjdk-8 8u45-b14-1 (sid) | openjdk-8 8u45-b14-1 (sid) |
| oracle | jdk | — | — |
| oracle | jre | — | — |
CVSS provenance
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:P/A:N
vendor_debian4.3MEDIUM
vendor_redhat4.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
OpenJDK: incorrect handling of default methods (Hotspot, 8065366)
vendor_redhat·2015-04-14·CVSS 4.3
CVE-2015-0470 [MEDIUM] OpenJDK: incorrect handling of default methods (Hotspot, 8065366)
OpenJDK: incorrect handling of default methods (Hotspot, 8065366)
Unspecified vulnerability in Oracle Java SE 8u40 allows remote attackers to affect integrity via unknown vectors related to Hotspot.
A flaw was discovered in the Hotspot component in OpenJDK. An untrusted Java application or applet could use these flaws to bypass certain Java sandbox restrictions.
Package: java-1.6.0-openjdk (Red Hat Enterprise Linux 5) - Not affected
Package: java-1.6.0-sun (Red Hat Enterprise Linux 5) - Not affected
Package: java-1.7.0-openjdk (Red Hat Enterprise Linux 5) - Not affected
Package: java-1.7.0-oracle (Red Hat Enterprise Linux 5) - Not affected
Package: java-1.6.0-openjdk (Red Hat Enterprise Linux 6) - Not affected
Package: java-1.6.0-sun (Red Hat Enterprise Linux 6) - Not affected
Pac
Debian
CVE-2015-0470: openjdk-8 - Unspecified vulnerability in Oracle Java SE 8u40 allows remote attackers to affe...
vendor_debian·2015·CVSS 4.3
CVE-2015-0470 [MEDIUM] CVE-2015-0470: openjdk-8 - Unspecified vulnerability in Oracle Java SE 8u40 allows remote attackers to affe...
Unspecified vulnerability in Oracle Java SE 8u40 allows remote attackers to affect integrity via unknown vectors related to Hotspot.
Scope: local
sid: resolved (fixed in 8u45-b14-1)
GHSA
GHSA-f689-75cv-gcpf: Unspecified vulnerability in Oracle Java SE 8u40 allows remote attackers to affect integrity via unknown vectors related to Hotspot
ghsa_unreviewed·2022-05-13
CVE-2015-0470 [MEDIUM] GHSA-f689-75cv-gcpf: Unspecified vulnerability in Oracle Java SE 8u40 allows remote attackers to affect integrity via unknown vectors related to Hotspot
Unspecified vulnerability in Oracle Java SE 8u40 allows remote attackers to affect integrity via unknown vectors related to Hotspot.
No detection rules found.
No public exploits indexed.
http://lists.opensuse.org/opensuse-security-announce/2015-04/msg00017.htmlhttp://rhn.redhat.com/errata/RHSA-2015-0809.htmlhttp://rhn.redhat.com/errata/RHSA-2015-0854.htmlhttp://www.debian.org/security/2015/dsa-3234http://www.debian.org/security/2015/dsa-3235http://www.debian.org/security/2015/dsa-3316http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.htmlhttp://www.securityfocus.com/bid/74149http://www.securitytracker.com/id/1032120https://security.gentoo.org/glsa/201603-11http://lists.opensuse.org/opensuse-security-announce/2015-04/msg00017.htmlhttp://rhn.redhat.com/errata/RHSA-2015-0809.htmlhttp://rhn.redhat.com/errata/RHSA-2015-0854.htmlhttp://www.debian.org/security/2015/dsa-3234http://www.debian.org/security/2015/dsa-3235http://www.debian.org/security/2015/dsa-3316http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.htmlhttp://www.securityfocus.com/bid/74149http://www.securitytracker.com/id/1032120https://security.gentoo.org/glsa/201603-11
2015-04-16
Published