Lucene search

K
ubuntucveUbuntu.comUB:CVE-2016-0483
HistoryJan 20, 2016 - 12:00 a.m.

CVE-2016-0483

2016-01-2000:00:00
ubuntu.com
ubuntu.com
17

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

0.049 Low

EPSS

Percentile

92.8%

Unspecified vulnerability in Oracle Java SE 6u105, 7u91, and 8u66; Java SE
Embedded 8u65; and JRockit R28.3.8 allows remote attackers to affect
confidentiality, integrity, and availability via vectors related to AWT.
NOTE: the previous information is from the January 2016 CPU. Oracle has not
commented on third-party claims that this is a heap-based buffer overflow
in the readImage function, which allows remote attackers to execute
arbitrary code via crafted image data.

OSVersionArchitecturePackageVersionFilename
ubuntu12.04noarchopenjdk-6< 6b38-1.13.10-0ubuntu0.12.04.1UNKNOWN
ubuntu14.04noarchopenjdk-6< 6b38-1.13.10-0ubuntu0.14.04.1UNKNOWN
ubuntu15.04noarchopenjdk-6< 6b38-1.13.10-0ubuntu0.15.04.1UNKNOWN
ubuntu15.10noarchopenjdk-6< 6b38-1.13.10-0ubuntu0.15.10.1UNKNOWN
ubuntu12.04noarchopenjdk-7< 7u95-2.6.4-0ubuntu0.12.04.1UNKNOWN
ubuntu14.04noarchopenjdk-7< 7u95-2.6.4-0ubuntu0.14.04.1UNKNOWN
ubuntu15.04noarchopenjdk-7< 7u95-2.6.4-0ubuntu0.15.04.1UNKNOWN
ubuntu15.10noarchopenjdk-7< 7u95-2.6.4-0ubuntu0.15.10.1UNKNOWN
ubuntu15.10noarchopenjdk-8< 8u91-b14-0ubuntu4~15.10.1UNKNOWN

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

0.049 Low

EPSS

Percentile

92.8%