CVE-2014-0460

critical

Description

Unspecified vulnerability in Oracle Java SE 5.0u61, 6u71, 7u51, and 8; JRockit R27.8.1 and R28.3.1; and Java SE Embedded 7u51 allows remote attackers to affect confidentiality and integrity via vectors related to JNDI.

References

https://access.redhat.com/errata/RHSA-2014:0414

https://access.redhat.com/errata/RHSA-2014:0413

http://www.ubuntu.com/usn/USN-2191-1

http://www.ubuntu.com/usn/USN-2187-1

http://www.securityfocus.com/bid/66916

http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html

http://www.ibm.com/support/docview.wss?uid=swg21677387

http://www.ibm.com/support/docview.wss?uid=swg21675343

http://www.debian.org/security/2014/dsa-2912

http://www-01.ibm.com/support/docview.wss?uid=swg21686717

http://www-01.ibm.com/support/docview.wss?uid=swg21681256

http://www-01.ibm.com/support/docview.wss?uid=swg21679713

http://www-01.ibm.com/support/docview.wss?uid=swg21676746

http://www-01.ibm.com/support/docview.wss?uid=swg21676672

http://www-01.ibm.com/support/docview.wss?uid=swg21674539

http://www-01.ibm.com/support/docview.wss?uid=swg21673836

http://www-01.ibm.com/support/docview.wss?uid=swg21672080

http://security.gentoo.org/glsa/glsa-201502-12.xml

http://security.gentoo.org/glsa/glsa-201406-32.xml

http://secunia.com/advisories/61264

http://secunia.com/advisories/60117

http://secunia.com/advisories/60111

http://secunia.com/advisories/60003

http://secunia.com/advisories/59706

http://secunia.com/advisories/59705

http://secunia.com/advisories/59704

http://secunia.com/advisories/59642

http://secunia.com/advisories/59516

http://secunia.com/advisories/59436

http://secunia.com/advisories/59307

http://secunia.com/advisories/59255

http://secunia.com/advisories/59250

http://secunia.com/advisories/59082

http://secunia.com/advisories/59071

http://secunia.com/advisories/59058

http://secunia.com/advisories/59023

http://secunia.com/advisories/59022

http://secunia.com/advisories/58415

http://rhn.redhat.com/errata/RHSA-2014-0685.html

http://rhn.redhat.com/errata/RHSA-2014-0675.html

http://marc.info/?l=bugtraq&m=140852974709252&w=2

http://marc.info/?l=bugtraq&m=140852886808946&w=2

http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10698

Details

Source: Mitre, NVD

Published: 2014-04-16

Risk Information

CVSS v2

Base Score: 5.8

Vector: CVSS2#AV:N/AC:M/Au:N/C:P/I:P/A:N

Severity: Medium

CVSS v3

Base Score: 9.8

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Severity: Critical