cbcvebase.

Debian Openjdk-8 vulnerabilities

333 known vulnerabilities affecting debian/openjdk-8.

Total CVEs
333
CISA KEV
2
actively exploited
Public exploits
7
Exploited in wild
3
Severity breakdown
CRITICAL46HIGH45MEDIUM166LOW76

Vulnerabilities

Page 14 of 17
CVE-2022-21248P4LOWCVSS 3.7fixed in openjdk-11 11.0.14+9-1~deb11u1 (bullseye)2022
CVE-2022-21248 [LOW] CVE-2022-21248: openjdk-11 - Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product o... Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Serialization). Supported versions that are affected are Oracle Java SE: 7u321, 8u311, 11.0.13, 17.0.1; Oracle GraalVM Enterprise Edition: 20.3.4 and 21.3.0. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple
debian
CVE-2015-0383P4MEDIUMCVSS 5.4fixed in openjdk-8 8u40~b22-1 (sid)2015
CVE-2015-0383 [MEDIUM] CVE-2015-0383: openjdk-8 - Unspecified vulnerability in Oracle Java SE 5.0u75, 6u85, 7u72, and 8u25; Java S... Unspecified vulnerability in Oracle Java SE 5.0u75, 6u85, 7u72, and 8u25; Java SE Embedded 7u71 and 8u6; and JRockit R27.8.4 and R28.3.4 allows local users to affect integrity and availability via unknown vectors related to Hotspot. Scope: local sid: resolved (fixed in 8u40~b22-1)
debian
CVE-2018-2602P4MEDIUMCVSS 4.5fixed in openjdk-8 8u162-b12-1 (sid)2018
CVE-2018-2602 [MEDIUM] CVE-2018-2602: openjdk-8 - Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subc... Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: I18n). Supported versions that are affected are Java SE: 6u171, 7u161, 8u152 and 9.0.1; Java SE Embedded: 8u151. Difficult to exploit vulnerability allows unauthenticated attacker with logon to the infrastructure where Java SE, Java SE Embedded executes to compromise Java SE,
debian
CVE-2015-2625P4LOWCVSS 2.6fixed in openjdk-8 8u66-b01-1 (sid)2015
CVE-2015-2625 [LOW] CVE-2015-2625: openjdk-8 - Unspecified vulnerability in Oracle Java SE 6u95, 7u80, and 8u45; JRockit R28.3.... Unspecified vulnerability in Oracle Java SE 6u95, 7u80, and 8u45; JRockit R28.3.6; and Java SE Embedded 7u75 and 8u33 allows remote attackers to affect confidentiality via vectors related to JSSE. Scope: local sid: resolved (fixed in 8u66-b01-1)
debian
CVE-2014-6558P4LOWCVSS 2.6fixed in openjdk-8 8u40~b09-1 (sid)2014
CVE-2014-6558 [LOW] CVE-2014-6558: openjdk-8 - Unspecified vulnerability in Oracle Java SE 5.0u71, 6u81, 7u67, and 8u20; Java S... Unspecified vulnerability in Oracle Java SE 5.0u71, 6u81, 7u67, and 8u20; Java SE Embedded 7u60; and JRockit R27.8.3 and JRockit R28.3.3 allows remote attackers to affect integrity via unknown vectors related to Security. Scope: local sid: resolved (fixed in 8u40~b09-1)
debian
CVE-2020-2756P4LOWCVSS 3.7fixed in openjdk-11 11.0.7+10-1 (bullseye)2020
CVE-2020-2756 [LOW] CVE-2020-2756: openjdk-11 - Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (compon... Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Serialization). Supported versions that are affected are Java SE: 7u251, 8u241, 11.0.6 and 14; Java SE Embedded: 8u241. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful a
debian
CVE-2020-2757P4LOWCVSS 3.7fixed in openjdk-11 11.0.7+10-1 (bullseye)2020
CVE-2020-2757 [LOW] CVE-2020-2757: openjdk-11 - Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (compon... Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Serialization). Supported versions that are affected are Java SE: 7u251, 8u241, 11.0.6 and 14; Java SE Embedded: 8u241. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful a
debian
CVE-2018-2952P4LOWCVSS 3.7fixed in openjdk-8 8u181-b13-1 (sid)2018
CVE-2018-2952 [LOW] CVE-2018-2952: openjdk-8 - Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java... Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: Concurrency). Supported versions that are affected are Java SE: 6u191, 7u181, 8u172 and 10.0.1; Java SE Embedded: 8u171; JRockit: R28.3.18. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java S
debian
CVE-2018-2579P4LOWCVSS 3.7fixed in openjdk-8 8u162-b12-1 (sid)2018
CVE-2018-2579 [LOW] CVE-2018-2579: openjdk-8 - Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java... Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: Libraries). Supported versions that are affected are Java SE: 6u171, 7u161, 8u152 and 9.0.1; Java SE Embedded: 8u151; JRockit: R28.3.16. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE,
debian
CVE-2018-3136P4LOWCVSS 3.4fixed in openjdk-11 11.0.1+13-1 (bullseye)2018
CVE-2018-3136 [LOW] CVE-2018-3136: openjdk-11 - Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subc... Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Security). Supported versions that are affected are Java SE: 6u201, 7u191, 8u182 and 11; Java SE Embedded: 8u181. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful at
debian
CVE-2020-14577P4LOWCVSS 3.7fixed in openjdk-11 11.0.8+10-1 (bullseye)2020
CVE-2020-14577 [LOW] CVE-2020-14577: openjdk-11 - Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (compon... Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: JSSE). Supported versions that are affected are Java SE: 7u261, 8u251, 11.0.7 and 14.0.1; Java SE Embedded: 8u251. Difficult to exploit vulnerability allows unauthenticated attacker with network access via TLS to compromise Java SE, Java SE Embedded. Successful attacks of this vul
debian
CVE-2020-14581P4LOWCVSS 3.7fixed in openjdk-11 11.0.8+10-1 (bullseye)2020
CVE-2020-14581 [LOW] CVE-2020-14581: openjdk-11 - Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (compon... Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: 2D). Supported versions that are affected are Java SE: 8u251, 11.0.7 and 14.0.1; Java SE Embedded: 8u251. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful attacks of th
debian
CVE-2020-2590P4LOWCVSS 3.7fixed in openjdk-11 11.0.6+10-1 (bullseye)2020
CVE-2020-2590 [LOW] CVE-2020-2590: openjdk-11 - Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (compon... Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Security). Supported versions that are affected are Java SE: 7u241, 8u231, 11.0.5 and 13.0.1; Java SE Embedded: 8u231. Difficult to exploit vulnerability allows unauthenticated attacker with network access via Kerberos to compromise Java SE, Java SE Embedded. Successful attacks of t
debian
CVE-2014-6502P4LOWCVSS 2.6fixed in openjdk-8 8u40~b09-1 (sid)2014
CVE-2014-6502 [LOW] CVE-2014-6502: openjdk-8 - Unspecified vulnerability in Oracle Java SE 5.0u71, 6u81, 7u67, and 8u20, and Ja... Unspecified vulnerability in Oracle Java SE 5.0u71, 6u81, 7u67, and 8u20, and Java SE Embedded 7u60, allows remote attackers to affect integrity via unknown vectors related to Libraries. Scope: local sid: resolved (fixed in 8u40~b09-1)
debian
CVE-2020-2659P4LOWCVSS 3.7fixed in openjdk-8 8u242-b08-1 (sid)2020
CVE-2020-2659 [LOW] CVE-2020-2659: openjdk-8 - Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (compon... Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Networking). Supported versions that are affected are Java SE: 7u241 and 8u231; Java SE Embedded: 8u231. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful attacks of this v
debian
CVE-2020-2754P4LOWCVSS 3.7fixed in openjdk-11 11.0.7+10-1 (bullseye)2020
CVE-2020-2754 [LOW] CVE-2020-2754: openjdk-11 - Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (compon... Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Scripting). Supported versions that are affected are Java SE: 8u241, 11.0.6 and 14; Java SE Embedded: 8u241. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful attacks of t
debian
CVE-2020-14579P4LOWCVSS 3.7fixed in openjdk-11 11.0.8+10-1 (bullseye)2020
CVE-2020-14579 [LOW] CVE-2020-14579: openjdk-11 - Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (compon... Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Libraries). Supported versions that are affected are Java SE: 7u261 and 8u251; Java SE Embedded: 8u251. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful attacks of this
debian
CVE-2020-14578P4LOWCVSS 3.7fixed in openjdk-11 11.0.8+10-1 (bullseye)2020
CVE-2020-14578 [LOW] CVE-2020-14578: openjdk-11 - Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (compon... Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Libraries). Supported versions that are affected are Java SE: 7u261 and 8u251; Java SE Embedded: 8u251. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful attacks of this
debian
CVE-2020-2583P4LOWCVSS 3.7fixed in openjdk-11 11.0.6+10-1 (bullseye)2020
CVE-2020-2583 [LOW] CVE-2020-2583: openjdk-11 - Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (compon... Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Serialization). Supported versions that are affected are Java SE: 7u241, 8u231, 11.0.5 and 13.0.1; Java SE Embedded: 8u231. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successf
debian
CVE-2020-2755P4LOWCVSS 3.7fixed in openjdk-11 11.0.7+10-1 (bullseye)2020
CVE-2020-2755 [LOW] CVE-2020-2755: openjdk-11 - Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (compon... Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Scripting). Supported versions that are affected are Java SE: 8u241, 11.0.6 and 14; Java SE Embedded: 8u241. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful attacks of t
debian