cbcvebase.
CVE-2016-0264
published 2016-05-24

CVE-2016-0264: Buffer overflow in the Java Virtual Machine (JVM) in IBM SDK, Java Technology Edition 6 before SR16 FP25 (6.0.16.25), 6 R1 before SR8 FP25 (6.1.8.25), 7 before…

PriorityP341medium5.6CVSS 3.1
AVNACHPRNUINSUCLILAL
EPSS
3.92%
89.3th percentile
Buffer overflow in the Java Virtual Machine (JVM) in IBM SDK, Java Technology Edition 6 before SR16 FP25 (6.0.16.25), 6 R1 before SR8 FP25 (6.1.8.25), 7 before SR9 FP40 (7.0.9.40), 7 R1 before SR3 FP40 (7.1.3.40), and 8 before SR3 (8.0.3.0) allows remote attackers to execute arbitrary code via unspecified vectors.

Affected

32 ranges· showing 25
VendorProductVersion rangeFixed in
ibmjava_sdk>= 6.0.0.0 < 6.0.16.256.0.16.25
ibmjava_sdk>= 6.1.0.0 < 6.1.8.256.1.8.25
ibmjava_sdk>= 7.0.0.0 < 7.0.9.407.0.9.40
ibmjava_sdk>= 7.1.0.0 < 7.1.3.407.1.3.40
ibmjava_sdk>= 8.0.0.0 < 8.0.3.08.0.3.0
redhatenterprise_linux_desktop
redhatenterprise_linux_desktop
redhatenterprise_linux_desktop
redhatenterprise_linux_hpc_node_supplementary
redhatenterprise_linux_hpc_node_supplementary
redhatenterprise_linux_server
redhatenterprise_linux_server
redhatenterprise_linux_server
redhatenterprise_linux_server_eus
redhatenterprise_linux_server_eus
redhatenterprise_linux_server_eus
redhatenterprise_linux_server_eus
redhatenterprise_linux_server_eus
redhatenterprise_linux_workstation
redhatenterprise_linux_workstation
redhatenterprise_linux_workstation
redhatsatellite
redhatsatellite
suselinux_enterprise_server
suselinux_enterprise_server

CVSS provenance

nvdv3.15.6MEDIUMCVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
vendor_redhat5.6MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.