CVE-2014-0418
Unspecified vulnerability in Oracle Java SE 6u65 and 7u45 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment, a different vulnerability than CVE-2013-5889, CVE-2013-5902,…
Does this matter?
Lower severity and a low EPSS score (6.26%). Track it; it rarely justifies an emergency change on its own.
Description
Unspecified vulnerability in Oracle Java SE 6u65 and 7u45 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment, a different vulnerability than CVE-2013-5889, CVE-2013-5902, CVE-2014-0410, CVE-2014-0415, and CVE-2014-0424.
- CVSS 2.0
- 5.1 MEDIUMAV:N/AC:H/Au:N/C:P/I:P/A:P
- EPSS
- 6.26% probability · 93th percentile
- CISA KEV
- Not listed
- Affected
- redhat/enterprise linux desktop supplementary · redhat/enterprise linux hpc node supplementary · redhat/enterprise linux server supplementary · redhat/enterprise linux server supplementary aus · redhat/enterprise linux server supplementary eus · redhat/enterprise linux workstation supplementary · oracle/jdk · oracle/jre · hp/jdk · hp/jre
- Source
- secalert_us@oracle.com
References
- http://marc.info/?l=bugtraq&m=139402697611681&w=2Third Party Advisory
- http://marc.info/?l=bugtraq&m=139402749111889&w=2Third Party Advisory
- http://osvdb.org/102012Broken Link
- http://rhn.redhat.com/errata/RHSA-2014-0030.htmlThird Party Advisory
- http://secunia.com/advisories/56485Permissions Required
- http://secunia.com/advisories/56535Permissions Required
- http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.htmlVendor Advisory
- http://www.securityfocus.com/bid/64758Third Party Advisory, VDB Entry
- http://www.securityfocus.com/bid/64917Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1029608Third Party Advisory, VDB Entry
- https://access.redhat.com/errata/RHSA-2014:0414
- https://exchange.xforce.ibmcloud.com/vulnerabilities/90344
- https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777Third Party Advisory
- http://marc.info/?l=bugtraq&m=139402697611681&w=2Third Party Advisory
- http://marc.info/?l=bugtraq&m=139402749111889&w=2Third Party Advisory
- http://osvdb.org/102012Broken Link
- http://rhn.redhat.com/errata/RHSA-2014-0030.htmlThird Party Advisory
- http://secunia.com/advisories/56485Permissions Required
- http://secunia.com/advisories/56535Permissions Required
- http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.htmlVendor Advisory
- http://www.securityfocus.com/bid/64758Third Party Advisory, VDB Entry
- http://www.securityfocus.com/bid/64917Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1029608Third Party Advisory, VDB Entry
- https://access.redhat.com/errata/RHSA-2014:0414
- https://exchange.xforce.ibmcloud.com/vulnerabilities/90344
- https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.