Debian Openjdk-8 vulnerabilities
333 known vulnerabilities affecting debian/openjdk-8.
Total CVEs
333
CISA KEV
2
actively exploited
Public exploits
7
Exploited in wild
3
Severity breakdown
CRITICAL46HIGH45MEDIUM166LOW76
Vulnerabilities
Page 14 of 17
CVE-2015-0383P4MEDIUMCVSS 5.4fixed in openjdk-8 8u40~b22-1 (sid)2015
CVE-2015-0383 [MEDIUM] CVE-2015-0383: openjdk-8 - Unspecified vulnerability in Oracle Java SE 5.0u75, 6u85, 7u72, and 8u25; Java S...
Unspecified vulnerability in Oracle Java SE 5.0u75, 6u85, 7u72, and 8u25; Java SE Embedded 7u71 and 8u6; and JRockit R27.8.4 and R28.3.4 allows local users to affect integrity and availability via unknown vectors related to Hotspot.
Scope: local
sid: resolved (fixed in 8u40~b22-1)
debian
CVE-2021-35603P4LOWCVSS 3.7fixed in openjdk-11 11.0.13+8-1~deb11u1 (bullseye)2021
CVE-2021-35603 [LOW] CVE-2021-35603: openjdk-11 - Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracl...
Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JSSE). Supported versions that are affected are Java SE: 7u311, 8u301, 11.0.12, 17; Oracle GraalVM Enterprise Edition: 20.3.3 and 21.2.0. Difficult to exploit vulnerability allows unauthenticated attacker with network access via TLS to compromise Java SE, Oracle G
debian
CVE-2018-2602P4MEDIUMCVSS 4.5fixed in openjdk-8 8u162-b12-1 (sid)2018
CVE-2018-2602 [MEDIUM] CVE-2018-2602: openjdk-8 - Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subc...
Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: I18n). Supported versions that are affected are Java SE: 6u171, 7u161, 8u152 and 9.0.1; Java SE Embedded: 8u151. Difficult to exploit vulnerability allows unauthenticated attacker with logon to the infrastructure where Java SE, Java SE Embedded executes to compromise Java SE,
debian
CVE-2015-2625P4LOWCVSS 2.6fixed in openjdk-8 8u66-b01-1 (sid)2015
CVE-2015-2625 [LOW] CVE-2015-2625: openjdk-8 - Unspecified vulnerability in Oracle Java SE 6u95, 7u80, and 8u45; JRockit R28.3....
Unspecified vulnerability in Oracle Java SE 6u95, 7u80, and 8u45; JRockit R28.3.6; and Java SE Embedded 7u75 and 8u33 allows remote attackers to affect confidentiality via vectors related to JSSE.
Scope: local
sid: resolved (fixed in 8u66-b01-1)
debian
CVE-2014-6558P4LOWCVSS 2.6fixed in openjdk-8 8u40~b09-1 (sid)2014
CVE-2014-6558 [LOW] CVE-2014-6558: openjdk-8 - Unspecified vulnerability in Oracle Java SE 5.0u71, 6u81, 7u67, and 8u20; Java S...
Unspecified vulnerability in Oracle Java SE 5.0u71, 6u81, 7u67, and 8u20; Java SE Embedded 7u60; and JRockit R27.8.3 and JRockit R28.3.3 allows remote attackers to affect integrity via unknown vectors related to Security.
Scope: local
sid: resolved (fixed in 8u40~b09-1)
debian
CVE-2020-2756P4LOWCVSS 3.7fixed in openjdk-11 11.0.7+10-1 (bullseye)2020
CVE-2020-2756 [LOW] CVE-2020-2756: openjdk-11 - Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (compon...
Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Serialization). Supported versions that are affected are Java SE: 7u251, 8u241, 11.0.6 and 14; Java SE Embedded: 8u241. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful a
debian
CVE-2020-2757P4LOWCVSS 3.7fixed in openjdk-11 11.0.7+10-1 (bullseye)2020
CVE-2020-2757 [LOW] CVE-2020-2757: openjdk-11 - Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (compon...
Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Serialization). Supported versions that are affected are Java SE: 7u251, 8u241, 11.0.6 and 14; Java SE Embedded: 8u241. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful a
debian
CVE-2018-2579P4LOWCVSS 3.7fixed in openjdk-8 8u162-b12-1 (sid)2018
CVE-2018-2579 [LOW] CVE-2018-2579: openjdk-8 - Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java...
Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: Libraries). Supported versions that are affected are Java SE: 6u171, 7u161, 8u152 and 9.0.1; Java SE Embedded: 8u151; JRockit: R28.3.16. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE,
debian
CVE-2020-14577P4LOWCVSS 3.7fixed in openjdk-11 11.0.8+10-1 (bullseye)2020
CVE-2020-14577 [LOW] CVE-2020-14577: openjdk-11 - Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (compon...
Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: JSSE). Supported versions that are affected are Java SE: 7u261, 8u251, 11.0.7 and 14.0.1; Java SE Embedded: 8u251. Difficult to exploit vulnerability allows unauthenticated attacker with network access via TLS to compromise Java SE, Java SE Embedded. Successful attacks of this vul
debian
CVE-2020-14581P4LOWCVSS 3.7fixed in openjdk-11 11.0.8+10-1 (bullseye)2020
CVE-2020-14581 [LOW] CVE-2020-14581: openjdk-11 - Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (compon...
Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: 2D). Supported versions that are affected are Java SE: 8u251, 11.0.7 and 14.0.1; Java SE Embedded: 8u251. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful attacks of th
debian
CVE-2020-2590P4LOWCVSS 3.7fixed in openjdk-11 11.0.6+10-1 (bullseye)2020
CVE-2020-2590 [LOW] CVE-2020-2590: openjdk-11 - Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (compon...
Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Security). Supported versions that are affected are Java SE: 7u241, 8u231, 11.0.5 and 13.0.1; Java SE Embedded: 8u231. Difficult to exploit vulnerability allows unauthenticated attacker with network access via Kerberos to compromise Java SE, Java SE Embedded. Successful attacks of t
debian
CVE-2014-6587P4MEDIUMCVSS 4.3fixed in openjdk-8 8u40~b22-1 (sid)2014
CVE-2014-6587 [MEDIUM] CVE-2014-6587: openjdk-8 - Unspecified vulnerability in Oracle Java SE 6u85, 7u72, and 8u25 allows local us...
Unspecified vulnerability in Oracle Java SE 6u85, 7u72, and 8u25 allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Libraries.
Scope: local
sid: resolved (fixed in 8u40~b22-1)
debian
CVE-2020-2659P4LOWCVSS 3.7fixed in openjdk-8 8u242-b08-1 (sid)2020
CVE-2020-2659 [LOW] CVE-2020-2659: openjdk-8 - Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (compon...
Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Networking). Supported versions that are affected are Java SE: 7u241 and 8u231; Java SE Embedded: 8u231. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful attacks of this v
debian
CVE-2018-2952P4LOWCVSS 3.7fixed in openjdk-8 8u181-b13-1 (sid)2018
CVE-2018-2952 [LOW] CVE-2018-2952: openjdk-8 - Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java...
Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: Concurrency). Supported versions that are affected are Java SE: 6u191, 7u181, 8u172 and 10.0.1; Java SE Embedded: 8u171; JRockit: R28.3.18. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java S
debian
CVE-2020-2754P4LOWCVSS 3.7fixed in openjdk-11 11.0.7+10-1 (bullseye)2020
CVE-2020-2754 [LOW] CVE-2020-2754: openjdk-11 - Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (compon...
Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Scripting). Supported versions that are affected are Java SE: 8u241, 11.0.6 and 14; Java SE Embedded: 8u241. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful attacks of t
debian
CVE-2020-14579P4LOWCVSS 3.7fixed in openjdk-11 11.0.8+10-1 (bullseye)2020
CVE-2020-14579 [LOW] CVE-2020-14579: openjdk-11 - Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (compon...
Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Libraries). Supported versions that are affected are Java SE: 7u261 and 8u251; Java SE Embedded: 8u251. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful attacks of this
debian
CVE-2020-14578P4LOWCVSS 3.7fixed in openjdk-11 11.0.8+10-1 (bullseye)2020
CVE-2020-14578 [LOW] CVE-2020-14578: openjdk-11 - Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (compon...
Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Libraries). Supported versions that are affected are Java SE: 7u261 and 8u251; Java SE Embedded: 8u251. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful attacks of this
debian
CVE-2020-2583P4LOWCVSS 3.7fixed in openjdk-11 11.0.6+10-1 (bullseye)2020
CVE-2020-2583 [LOW] CVE-2020-2583: openjdk-11 - Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (compon...
Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Serialization). Supported versions that are affected are Java SE: 7u241, 8u231, 11.0.5 and 13.0.1; Java SE Embedded: 8u231. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successf
debian
CVE-2020-2755P4LOWCVSS 3.7fixed in openjdk-11 11.0.7+10-1 (bullseye)2020
CVE-2020-2755 [LOW] CVE-2020-2755: openjdk-11 - Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (compon...
Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Scripting). Supported versions that are affected are Java SE: 8u241, 11.0.6 and 14; Java SE Embedded: 8u241. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful attacks of t
debian
CVE-2020-2654P4LOWCVSS 3.7fixed in openjdk-11 11.0.6+10-1 (bullseye)2020
CVE-2020-2654 [LOW] CVE-2020-2654: openjdk-11 - Vulnerability in the Java SE product of Oracle Java SE (component: Libraries). S...
Vulnerability in the Java SE product of Oracle Java SE (component: Libraries). Supported versions that are affected are Java SE: 7u241, 8u231, 11.0.5 and 13.0.1. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE. Successful attacks of this vulnerability can result in unauthorized abili
debian