cbcvebase.

Debian Openjdk-8 vulnerabilities

333 known vulnerabilities affecting debian/openjdk-8.

Total CVEs
333
CISA KEV
2
actively exploited
Public exploits
7
Exploited in wild
3
Severity breakdown
CRITICAL46HIGH45MEDIUM166LOW76

Vulnerabilities

Page 2 of 17
CVE-2017-10102P3CRITICALCVSS 9.0fixed in openjdk-8 8u141-b15-1 (sid)2017
CVE-2017-10102 [CRITICAL] CVE-2017-10102: openjdk-8 - Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subc... Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: RMI). Supported versions that are affected are Java SE: 6u151, 7u141 and 8u131; Java SE Embedded: 8u131. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. While the vulner
debian
CVE-2018-3183P3CRITICALCVSS 9.0fixed in openjdk-8 8u181-b13-2 (sid)2018
CVE-2018-3183 [CRITICAL] CVE-2018-3183: openjdk-8 - Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java... Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: Scripting). Supported versions that are affected are Java SE: 8u182 and 11; Java SE Embedded: 8u181; JRockit: R28.3.19. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embe
debian
CVE-2015-2628P3CRITICALCVSS 10.0fixed in openjdk-8 8u66-b01-1 (sid)2015
CVE-2015-2628 [CRITICAL] CVE-2015-2628: openjdk-8 - Unspecified vulnerability in Oracle Java SE 6u95, 7u80, and 8u45, and Java SE Em... Unspecified vulnerability in Oracle Java SE 6u95, 7u80, and 8u45, and Java SE Embedded 7u75 and 8u33 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to CORBA. Scope: local sid: resolved (fixed in 8u66-b01-1)
debian
CVE-2016-3587P3CRITICALCVSS 9.6fixed in openjdk-8 8u102-b14-1 (sid)2016
CVE-2016-3587 [CRITICAL] CVE-2016-3587: openjdk-8 - Unspecified vulnerability in Oracle Java SE 8u92 and Java SE Embedded 8u91 allow... Unspecified vulnerability in Oracle Java SE 8u92 and Java SE Embedded 8u91 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Hotspot. Scope: local sid: resolved (fixed in 8u102-b14-1)
debian
CVE-2016-3610P3CRITICALCVSS 9.6fixed in openjdk-8 8u102-b14-1 (sid)2016
CVE-2016-3610 [CRITICAL] CVE-2016-3610: openjdk-8 - Unspecified vulnerability in Oracle Java SE 8u92 and Java SE Embedded 8u91 allow... Unspecified vulnerability in Oracle Java SE 8u92 and Java SE Embedded 8u91 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Libraries, a different vulnerability than CVE-2016-3598. Scope: local sid: resolved (fixed in 8u102-b14-1)
debian
CVE-2016-5582P3HIGHCVSS 8.3fixed in openjdk-8 8u111-b14-1 (sid)2016
CVE-2016-5582 [HIGH] CVE-2016-5582: openjdk-8 - Unspecified vulnerability in Oracle Java SE 6u121, 7u111, 8u102; and Java SE Emb... Unspecified vulnerability in Oracle Java SE 6u121, 7u111, 8u102; and Java SE Embedded 8u101 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Hotspot, a different vulnerability than CVE-2016-5573. Scope: local sid: resolved (fixed in 8u111-b14-1)
debian
CVE-2015-4760P3CRITICALCVSS 10.0fixed in icu 52.1-10 (bookworm)2015
CVE-2015-4760 [CRITICAL] CVE-2015-4760: icu - Unspecified vulnerability in Oracle Java SE 6u95, 7u80, and 8u45 allows remote a... Unspecified vulnerability in Oracle Java SE 6u95, 7u80, and 8u45 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D. Scope: local bookworm: resolved (fixed in 52.1-10) bullseye: resolved (fixed in 52.1-10) forky: resolved (fixed in 52.1-10) sid: resolved (fixed in 52.1-10) trixie: resolved (fixed in 52.1-10
debian
CVE-2014-6601P3CRITICALCVSS 10.0fixed in openjdk-8 8u40~b22-1 (sid)2014
CVE-2014-6601 [CRITICAL] CVE-2014-6601: openjdk-8 - Unspecified vulnerability in Oracle Java SE 6u85, 7u72, and 8u25 allows remote a... Unspecified vulnerability in Oracle Java SE 6u85, 7u72, and 8u25 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Hotspot. Scope: local sid: resolved (fixed in 8u40~b22-1)
debian
CVE-2015-4860P3CRITICALCVSS 10.0fixed in openjdk-8 8u66-b17-1 (sid)2015
CVE-2015-4860 [CRITICAL] CVE-2015-4860: openjdk-8 - Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE E... Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE Embedded 8u51, allows remote attackers to affect confidentiality, integrity, and availability via vectors related to RMI, a different vulnerability than CVE-2015-4883. Scope: local sid: resolved (fixed in 8u66-b17-1)
debian
CVE-2015-4883P3CRITICALCVSS 10.0fixed in openjdk-8 8u66-b17-1 (sid)2015
CVE-2015-4883 [CRITICAL] CVE-2015-4883: openjdk-8 - Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE E... Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE Embedded 8u51, allows remote attackers to affect confidentiality, integrity, and availability via vectors related to RMI, a different vulnerability than CVE-2015-4860. Scope: local sid: resolved (fixed in 8u66-b17-1)
debian
CVE-2015-4732P3CRITICALCVSS 9.8fixed in openjdk-8 8u66-b01-1 (sid)2015
CVE-2015-4732 [CRITICAL] CVE-2015-4732: openjdk-8 - Unspecified vulnerability in Oracle Java SE 6u95, 7u80, and 8u45, and Java SE Em... Unspecified vulnerability in Oracle Java SE 6u95, 7u80, and 8u45, and Java SE Embedded 7u75 and 8u33 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries, a different vulnerability than CVE-2015-2590. Scope: local sid: resolved (fixed in 8u66-b01-1)
debian
CVE-2015-4733P3CRITICALCVSS 10.0fixed in openjdk-8 8u66-b01-1 (sid)2015
CVE-2015-4733 [CRITICAL] CVE-2015-4733: openjdk-8 - Unspecified vulnerability in Oracle Java SE 6u95, 7u80, and 8u45, and Java SE Em... Unspecified vulnerability in Oracle Java SE 6u95, 7u80, and 8u45, and Java SE Embedded 7u75 and 8u33 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to RMI. Scope: local sid: resolved (fixed in 8u66-b01-1)
debian
CVE-2014-8873P3HIGHCVSS 10.0fixed in openjdk-8 8u45-b14-1 (sid)2014
CVE-2014-8873 [CRITICAL] CVE-2014-8873: openjdk-8 - A .desktop file in the Debian openjdk-7 package 7u79-2.5.5-1~deb8u1 includes a M... A .desktop file in the Debian openjdk-7 package 7u79-2.5.5-1~deb8u1 includes a MIME type registration that is added to /etc/mailcap by mime-support, which allows remote attackers to execute arbitrary code via a JAR file. Scope: local sid: resolved (fixed in 8u45-b14-1)
debian
CVE-2016-3606P3CRITICALCVSS 9.6fixed in openjdk-8 8u102-b14-1 (sid)2016
CVE-2016-3606 [CRITICAL] CVE-2016-3606: openjdk-8 - Unspecified vulnerability in Oracle Java SE 7u101 and 8u92 and Java SE Embedded ... Unspecified vulnerability in Oracle Java SE 7u101 and 8u92 and Java SE Embedded 8u91 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Hotspot. Scope: local sid: resolved (fixed in 8u102-b14-1)
debian
CVE-2015-0469P3CRITICALCVSS 10.0fixed in openjdk-8 8u45-b14-1 (sid)2015
CVE-2015-0469 [CRITICAL] CVE-2015-0469: openjdk-8 - Unspecified vulnerability in Oracle Java SE 5.0u81, 6u91, 7u76, and 8u40 allows ... Unspecified vulnerability in Oracle Java SE 5.0u81, 6u91, 7u76, and 8u40 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D. Scope: local sid: resolved (fixed in 8u45-b14-1)
debian
CVE-2015-4881P3CRITICALCVSS 10.0fixed in openjdk-8 8u66-b17-1 (sid)2015
CVE-2015-4881 [CRITICAL] CVE-2015-4881: openjdk-8 - Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE E... Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE Embedded 8u51, allows remote attackers to affect confidentiality, integrity, and availability via vectors related to CORBA, a different vulnerability than CVE-2015-4835. Scope: local sid: resolved (fixed in 8u66-b17-1)
debian
CVE-2017-10285P3CRITICALCVSS 9.6fixed in openjdk-8 8u151-b12-1 (sid)2017
CVE-2017-10285 [CRITICAL] CVE-2017-10285: openjdk-8 - Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subc... Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: RMI). Supported versions that are affected are Java SE: 6u161, 7u151, 8u144 and 9; Java SE Embedded: 8u144. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful atta
debian
CVE-2017-3272P3CRITICALCVSS 9.6fixed in openjdk-8 8u121-b13-1 (sid)2017
CVE-2017-3272 [CRITICAL] CVE-2017-3272: openjdk-8 - Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subc... Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Libraries). Supported versions that are affected are Java SE: 6u131, 7u121 and 8u112; Java SE Embedded: 8u111. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful att
debian
CVE-2017-10346P3CRITICALCVSS 9.6fixed in openjdk-8 8u151-b12-1 (sid)2017
CVE-2017-10346 [CRITICAL] CVE-2017-10346: openjdk-8 - Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subc... Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Hotspot). Supported versions that are affected are Java SE: 6u161, 7u151, 8u144 and 9; Java SE Embedded: 8u144. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful
debian
CVE-2016-0636P3HIGHCVSS 8.1fixed in openjdk-8 8u77-b03-1 (sid)2016
CVE-2016-0636 [HIGH] CVE-2016-0636: openjdk-8 - Unspecified vulnerability in Oracle Java SE 7u97, 8u73, and 8u74 allows remote a... Unspecified vulnerability in Oracle Java SE 7u97, 8u73, and 8u74 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to the Hotspot sub-component. Scope: local sid: resolved (fixed in 8u77-b03-1)
debian
Debian Openjdk-8 vulnerabilities | cvebase