CVE-2018-3211Corporation Java vulnerability

11 documents7 sources
Severity
6.6MEDIUMNVD
EPSS
0.2%
top 59.48%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 17
Latest updateMay 13

Description

Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Serviceability). Supported versions that are affected are Java SE: 8u182 and 11; Java SE Embedded: 8u181. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Java SE, Java SE Embedded executes to compromise Java SE, Java SE Embedded. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:NExploitability: 1.3 | Impact: 5.2

Affected Packages3 packages

CVEListV5oracle_corporation/javaJava SE Embedded: 8u181, Java SE: 8u181, 11+1
NVDoracle/jdk1.8.0, 11.0.0+1
NVDoracle/jre1.8.0, 11.0.0+1

Patches

🔴Vulnerability Details

2
GHSA
GHSA-pj59-cg4q-jfjr: Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Serviceability)2022-05-13
CVEList
CVE-2018-3211: Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Serviceability)2018-10-17

📋Vendor Advisories

2
Red Hat
JDK: unspecified vulnerability fixed in 8u191 and 11.0.1 (Serviceability)2018-10-16
Debian
CVE-2018-3211: openjdk-8 - Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subc...2018

🕵️Threat Intelligence

5
Trendmicro
Analyzing the CVE-2018-3211 Vulnerability2018-10-17
Trendmicro
Analyzing the CVE-2018-3211 Vulnerability2018-10-17
Trendmicro
Analyzing the CVE-2018-3211 Vulnerability2018-10-17
Trendmicro
Analyzing the CVE-2018-3211 Vulnerability2018-10-17
Trendmicro
Analyzing the CVE-2018-3211 Vulnerability2018-10-17

💬Community

1
Bugzilla
CVE-2018-3211 Oracle JDK: unspecified vulnerability fixed in 8u191 and 11.0.1 (Serviceability)2018-10-16
CVE-2018-3211 — Oracle Corporation Java vulnerability | cvebase