7.8 High
CVSS2
Attack Vector
NETWORK
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
COMPLETE
AV:N/AC:L/Au:N/C:N/I:N/A:C
0.449 Medium
EPSS
Percentile
97.4%
The Java Secure Socket Extension (JSSE) in Sun JDK and JRE 6 Update 1 and
earlier, JDK and JRE 5.0 Updates 7 through 11, and SDK and JRE 1.4.2_11
through 1.4.2_14, when using JSSE for SSL/TLS support, allows remote
attackers to cause a denial of service (CPU consumption) via certain
SSL/TLS handshake requests.