Lucene search

K
ubuntucveUbuntu.comUB:CVE-2019-2602
HistoryApr 23, 2019 - 12:00 a.m.

CVE-2019-2602

2019-04-2300:00:00
ubuntu.com
ubuntu.com
30

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

EPSS

0.003

Percentile

71.9%

Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE
(subcomponent: Libraries). Supported versions that are affected are Java
SE: 7u211, 8u202, 11.0.2 and 12; Java SE Embedded: 8u201. Easily
exploitable vulnerability allows unauthenticated attacker with network
access via multiple protocols to compromise Java SE, Java SE Embedded.
Successful attacks of this vulnerability can result in unauthorized ability
to cause a hang or frequently repeatable crash (complete DOS) of Java SE,
Java SE Embedded. Note: This vulnerability can only be exploited by
supplying data to APIs in the specified Component without using Untrusted
Java Web Start applications or Untrusted Java applets, such as through a
web service. CVSS 3.0 Base Score 7.5 (Availability impacts). CVSS Vector:
(CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H).

OSVersionArchitecturePackageVersionFilename
ubuntu18.04noarchopenjdk-8< 8u212-b03-0ubuntu1.18.04.1UNKNOWN
ubuntu18.10noarchopenjdk-8< 8u212-b03-0ubuntu1.18.10.1UNKNOWN
ubuntu19.04noarchopenjdk-8< 8u212-b03-0ubuntu1.19.04.2UNKNOWN
ubuntu16.04noarchopenjdk-8< 8u212-b03-0ubuntu1.16.04.1UNKNOWN
ubuntu18.04noarchopenjdk-lts< 11.0.3+7-1ubuntu2~18.04.1UNKNOWN
ubuntu18.10noarchopenjdk-lts< 11.0.3+7-1ubuntu2~18.10.1UNKNOWN
ubuntu19.04noarchopenjdk-lts< 11.0.3+7-1ubuntu2~19.04.1UNKNOWN

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

EPSS

0.003

Percentile

71.9%