cbcvebase.
CVE-2016-5582
published 2016-10-25

CVE-2016-5582: Unspecified vulnerability in Oracle Java SE 6u121, 7u111, 8u102; and Java SE Embedded 8u101 allows remote attackers to affect confidentiality, integrity, and…

PriorityP354critical9.6CVSS 3.0
AVNACLPRNUIRSCCHIHAH
EPSS
5.44%
91.8th percentile
Unspecified vulnerability in Oracle Java SE 6u121, 7u111, 8u102; and Java SE Embedded 8u101 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Hotspot, a different vulnerability than CVE-2016-5573.

Affected

7 ranges
VendorProductVersion rangeFixed in
debianopenjdk-8< openjdk-8 8u111-b14-1 (sid)openjdk-8 8u111-b14-1 (sid)
oraclejdk
oraclejdk
oraclejdk
oraclejre
oraclejre
oraclejre

CVSS provenance

nvdv3.09.6CRITICALCVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H
nvdv2.09.3CRITICALAV:N/AC:M/Au:N/C:C/I:C/A:C
osv8.3HIGH
vendor_debian8.3HIGH
vendor_redhat8.3HIGH
vendor_ubuntu3.1LOW
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.