Debian Openjdk-8 vulnerabilities
333 known vulnerabilities affecting debian/openjdk-8.
Total CVEs
333
CISA KEV
2
actively exploited
Public exploits
7
Exploited in wild
3
Severity breakdown
CRITICAL46HIGH45MEDIUM166LOW76
Vulnerabilities
Page 7 of 17
CVE-2016-5549P4MEDIUMCVSS 6.5fixed in openjdk-8 8u121-b13-1 (sid)2016
CVE-2016-5549 [MEDIUM] CVE-2016-5549: openjdk-8 - Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subc...
Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Libraries). Supported versions that are affected are Java SE: 7u121 and 8u112; Java SE Embedded: 8u111. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful attacks requ
debian
CVE-2016-5548P4MEDIUMCVSS 6.5fixed in openjdk-8 8u121-b13-1 (sid)2016
CVE-2016-5548 [MEDIUM] CVE-2016-5548: openjdk-8 - Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subc...
Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Libraries). Supported versions that are affected are Java SE: 6u131, 7u121 and 8u112; Java SE Embedded: 8u111. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful attac
debian
CVE-2017-10243P4MEDIUMCVSS 6.5fixed in openjdk-8 8u141-b15-1 (sid)2017
CVE-2017-10243 [MEDIUM] CVE-2017-10243: openjdk-8 - Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java...
Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: JAX-WS). Supported versions that are affected are Java SE: 6u151, 7u141 and 8u131; Java SE Embedded: 8u131; JRockit: R28.3.14. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE
debian
CVE-2021-35564P4MEDIUMCVSS 5.3fixed in openjdk-11 11.0.13+8-1~deb11u1 (bullseye)2021
CVE-2021-35564 [MEDIUM] CVE-2021-35564: openjdk-11 - Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracl...
Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Keytool). Supported versions that are affected are Java SE: 7u311, 8u301, 11.0.12, 17; Oracle GraalVM Enterprise Edition: 20.3.3 and 21.2.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromis
debian
CVE-2016-0695P4MEDIUMCVSS 5.9fixed in openjdk-8 8u91-b14-1 (sid)2016
CVE-2016-0695 [MEDIUM] CVE-2016-0695: openjdk-8 - Unspecified vulnerability in Oracle Java SE 6u113, 7u99, and 8u77; Java SE Embed...
Unspecified vulnerability in Oracle Java SE 6u113, 7u99, and 8u77; Java SE Embedded 8u77; and JRockit R28.3.9 allows remote attackers to affect confidentiality via vectors related to Security.
Scope: local
sid: resolved (fixed in 8u91-b14-1)
debian
CVE-2016-3500P3MEDIUMCVSS 5.3fixed in openjdk-8 8u102-b14-1 (sid)2016
CVE-2016-3500 [MEDIUM] CVE-2016-3500: openjdk-8 - Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92; Java SE Embe...
Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92; Java SE Embedded 8u91; and JRockit R28.3.10 allows remote attackers to affect availability via vectors related to JAXP, a different vulnerability than CVE-2016-3508.
Scope: local
sid: resolved (fixed in 8u102-b14-1)
debian
CVE-2016-3508P3MEDIUMCVSS 5.3fixed in openjdk-8 8u102-b14-1 (sid)2016
CVE-2016-3508 [MEDIUM] CVE-2016-3508: openjdk-8 - Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92; Java SE Embe...
Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92; Java SE Embedded 8u91; and JRockit R28.3.10 allows remote attackers to affect availability via vectors related to JAXP, a different vulnerability than CVE-2016-3500.
Scope: local
sid: resolved (fixed in 8u102-b14-1)
debian
CVE-2018-2798P4MEDIUMCVSS 5.3fixed in openjdk-8 8u171-b11-1 (sid)2018
CVE-2018-2798 [MEDIUM] CVE-2018-2798: openjdk-8 - Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java...
Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: AWT). Supported versions that are affected are Java SE: 6u181, 7u171, 8u162 and 10; Java SE Embedded: 8u161; JRockit: R28.3.17. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE
debian
CVE-2018-2795P4MEDIUMCVSS 5.3fixed in openjdk-8 8u171-b11-1 (sid)2018
CVE-2018-2795 [MEDIUM] CVE-2018-2795: openjdk-8 - Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java...
Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: Security). Supported versions that are affected are Java SE: 6u181, 7u171, 8u162 and 10; Java SE Embedded: 8u161; JRockit: R28.3.17. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Jav
debian
CVE-2018-2797P4MEDIUMCVSS 5.3fixed in openjdk-8 8u171-b11-1 (sid)2018
CVE-2018-2797 [MEDIUM] CVE-2018-2797: openjdk-8 - Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java...
Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: JMX). Supported versions that are affected are Java SE: 6u181, 7u171, 8u162 and 10; Java SE Embedded: 8u161; JRockit: R28.3.17. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE
debian
CVE-2018-3214P4MEDIUMCVSS 5.3fixed in openjdk-8 8u181-b13-2 (sid)2018
CVE-2018-3214 [MEDIUM] CVE-2018-3214: openjdk-8 - Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java...
Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: Sound). Supported versions that are affected are Java SE: 6u201, 7u191 and 8u182; Java SE Embedded: 8u181; JRockit: R28.3.19. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Em
debian
CVE-2018-2603P4MEDIUMCVSS 5.3fixed in openjdk-8 8u162-b12-1 (sid)2018
CVE-2018-2603 [MEDIUM] CVE-2018-2603: openjdk-8 - Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java...
Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: Libraries). Supported versions that are affected are Java SE: 6u171, 7u161, 8u152 and 9.0.1; Java SE Embedded: 8u151; JRockit: R28.3.16. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE,
debian
CVE-2018-2796P4MEDIUMCVSS 5.3fixed in openjdk-8 8u171-b11-1 (sid)2018
CVE-2018-2796 [MEDIUM] CVE-2018-2796: openjdk-8 - Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java...
Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: Concurrency). Supported versions that are affected are Java SE: 7u171, 8u162 and 10; Java SE Embedded: 8u161; JRockit: R28.3.17. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE
debian
CVE-2021-35561P4MEDIUMCVSS 5.3fixed in openjdk-11 11.0.13+8-1~deb11u1 (bullseye)2021
CVE-2021-35561 [MEDIUM] CVE-2021-35561: openjdk-11 - Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracl...
Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Utility). Supported versions that are affected are Java SE: 7u311, 8u301, 11.0.12, 17; Oracle GraalVM Enterprise Edition: 20.3.3 and 21.2.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromis
debian
CVE-2021-35586P4MEDIUMCVSS 5.3fixed in openjdk-11 11.0.13+8-1~deb11u1 (bullseye)2021
CVE-2021-35586 [MEDIUM] CVE-2021-35586: openjdk-11 - Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracl...
Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: ImageIO). Supported versions that are affected are Java SE: 7u311, 8u301, 11.0.12, 17; Oracle GraalVM Enterprise Edition: 20.3.3 and 21.2.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromis
debian
CVE-2021-35578P4MEDIUMCVSS 5.3fixed in openjdk-11 11.0.13+8-1~deb11u1 (bullseye)2021
CVE-2021-35578 [MEDIUM] CVE-2021-35578: openjdk-11 - Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracl...
Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JSSE). Supported versions that are affected are Java SE: 8u301, 11.0.12, 17; Oracle GraalVM Enterprise Edition: 20.3.3 and 21.2.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via TLS to compromise Java SE, Oracle GraalVM
debian
CVE-2016-5597P4MEDIUMCVSS 5.9fixed in openjdk-8 8u111-b14-1 (sid)2016
CVE-2016-5597 [MEDIUM] CVE-2016-5597: openjdk-8 - Unspecified vulnerability in Oracle Java SE 6u121, 7u111, 8u102; and Java SE Emb...
Unspecified vulnerability in Oracle Java SE 6u121, 7u111, 8u102; and Java SE Embedded 8u101 allows remote attackers to affect confidentiality via vectors related to Networking.
Scope: local
sid: resolved (fixed in 8u111-b14-1)
debian
CVE-2015-4803P4MEDIUMCVSS 5.0fixed in openjdk-8 8u66-b17-1 (sid)2015
CVE-2015-4803 [MEDIUM] CVE-2015-4803: openjdk-8 - Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60; Java SE Embed...
Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60; Java SE Embedded 8u51; and JRockit R28.3.7 allows remote attackers to affect availability via vectors related to JAXP, a different vulnerability than CVE-2015-4893 and CVE-2015-4911.
Scope: local
sid: resolved (fixed in 8u66-b17-1)
debian
CVE-2015-4893P4MEDIUMCVSS 5.0fixed in openjdk-8 8u66-b17-1 (sid)2015
CVE-2015-4893 [MEDIUM] CVE-2015-4893: openjdk-8 - Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60; Java SE Embed...
Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60; Java SE Embedded 8u51; and JRockit R28.3.7 allows remote attackers to affect availability via vectors related to JAXP, a different vulnerability than CVE-2015-4803 and CVE-2015-4911.
Scope: local
sid: resolved (fixed in 8u66-b17-1)
debian
CVE-2018-3180P4MEDIUMCVSS 5.6fixed in openjdk-11 11.0.1+13-1 (bullseye)2018
CVE-2018-3180 [MEDIUM] CVE-2018-3180: openjdk-11 - Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java...
Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: JSSE). Supported versions that are affected are Java SE: 6u201, 7u191, 8u182 and 11; Java SE Embedded: 8u181; JRockit: R28.3.19. Difficult to exploit vulnerability allows unauthenticated attacker with network access via SSL/TLS to compromise Java SE, Java SE Embedde
debian