CVE-2015-2601

medium

Description

Unspecified vulnerability in Oracle Java SE 6u95, 7u80, and 8u45, JRockit R28.3.6, and Java SE Embedded 7u75 and 8u33 allows remote attackers to affect confidentiality via vectors related to JCE.

References

https://security.gentoo.org/glsa/201603-14

https://security.gentoo.org/glsa/201603-11

https://kc.mcafee.com/corporate/index?page=content&id=SB10139

http://www.ubuntu.com/usn/USN-2706-1

http://www.ubuntu.com/usn/USN-2696-1

http://www.securitytracker.com/id/1037732

http://www.securitytracker.com/id/1032910

http://www.securityfocus.com/bid/75867

http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html

http://www.debian.org/security/2015/dsa-3339

http://www.debian.org/security/2015/dsa-3316

http://rhn.redhat.com/errata/RHSA-2015-1604.html

http://rhn.redhat.com/errata/RHSA-2015-1544.html

http://rhn.redhat.com/errata/RHSA-2015-1526.html

http://rhn.redhat.com/errata/RHSA-2015-1488.html

http://rhn.redhat.com/errata/RHSA-2015-1486.html

http://rhn.redhat.com/errata/RHSA-2015-1485.html

http://rhn.redhat.com/errata/RHSA-2015-1243.html

http://rhn.redhat.com/errata/RHSA-2015-1242.html

http://rhn.redhat.com/errata/RHSA-2015-1241.html

http://rhn.redhat.com/errata/RHSA-2015-1230.html

http://rhn.redhat.com/errata/RHSA-2015-1229.html

http://rhn.redhat.com/errata/RHSA-2015-1228.html

http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00047.html

http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00046.html

http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00040.html

http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00039.html

http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10727

Details

Source: Mitre, NVD

Published: 2015-07-16

Risk Information

CVSS v2

Base Score: 5

Vector: CVSS2#AV:N/AC:L/Au:N/C:P/I:N/A:N

Severity: Medium

CVSS v3

Base Score: 6.8

Vector: CVSS:3.0/AV:N/AC:L/PR:H/UI:R/S:U/C:H/I:H/A:H

Severity: Medium