CVE-2014-1876

The unpacker::redirect_stdio function in unpack.cpp in unpack200 in OpenJDK 6, 7, and 8; Oracle Java SE 5.0u61, 6u71, 7u51, and 8; JRockit R27.8.1 and R28.3.1; and Java SE Embedded 7u51 does not securely create temporary files when a log file cannot be opened, which allows local users to overwrite arbitrary files via a symlink attack on /tmp/unpack.log.
Link Following
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
4.4 UNKNOWN
LOCAL
MEDIUM
AV:L/AC:M/Au:N/C:P/I:P/A:P
Base Score
CVSS 3.x
EPSS Score
Percentile: 22%
Affected Products (NVD)
VendorProductVersion
oracleopenjdk
1.6.0
oracleopenjdk
1.7.0
oracleopenjdk
1.8.0
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
openjdk-6
lucid
Fixed 6b31-1.13.3-1ubuntu1~0.10.04.1
released
precise
Fixed 6b31-1.13.3-1ubuntu1~0.12.04.2
released
quantal
Fixed 6b31-1.13.3-1ubuntu1~0.12.10.1
released
saucy
Fixed 6b31-1.13.3-1ubuntu1~0.13.10.1
released
trusty
dne
openjdk-7
lucid
dne
precise
Fixed 7u55-2.4.7-1ubuntu1~0.12.04.2
released
quantal
Fixed 7u55-2.4.7-1ubuntu1~0.12.10.1
released
saucy
Fixed 7u55-2.4.7-1ubuntu1~0.13.10.1
released
trusty
Fixed 7u55-2.4.7-1ubuntu1
released
openSUSE logo
openSUSE / SLES Releases
openSUSE Product
Release
java-1_7_0-openjdk
suse enterprise sap 12 SP5
1.7.0.231-43.27.2
fixed
suse enterprise server 12 SP2
1.7.0.111-33.1
fixed
suse enterprise server 12 SP5
1.7.0.231-43.27.2
fixed
java-1_7_0-openjdk-demo
suse enterprise sap 12 SP5
1.7.0.231-43.27.2
fixed
suse enterprise server 12 SP2
1.7.0.111-33.1
fixed
suse enterprise server 12 SP5
1.7.0.231-43.27.2
fixed
java-1_7_0-openjdk-devel
suse enterprise sap 12 SP5
1.7.0.231-43.27.2
fixed
suse enterprise server 12 SP2
1.7.0.111-33.1
fixed
suse enterprise server 12 SP5
1.7.0.231-43.27.2
fixed
java-1_7_0-openjdk-headless
suse enterprise sap 12 SP5
1.7.0.231-43.27.2
fixed
suse enterprise server 12 SP2
1.7.0.111-33.1
fixed
suse enterprise server 12 SP5
1.7.0.231-43.27.2
fixed
Red Hat logo
Red Hat Enterprise Linux Releases
Red Hat Product
Release
java-1.5.0-ibm
RHEL 6
1:1.5.0.16.6-1jpp.1.el6_5
fixed
java-1.5.0-ibm-demo
RHEL 6
1:1.5.0.16.6-1jpp.1.el6_5
fixed
java-1.5.0-ibm-devel
RHEL 6
1:1.5.0.16.6-1jpp.1.el6_5
fixed
java-1.5.0-ibm-javacomm
RHEL 6
1:1.5.0.16.6-1jpp.1.el6_5
fixed
java-1.5.0-ibm-jdbc
RHEL 6
1:1.5.0.16.6-1jpp.1.el6_5
fixed
java-1.5.0-ibm-plugin
RHEL 6
1:1.5.0.16.6-1jpp.1.el6_5
fixed
java-1.5.0-ibm-src
RHEL 6
1:1.5.0.16.6-1jpp.1.el6_5
fixed
java-1.6.0-ibm
RHEL 6
1:1.6.0.16.0-1jpp.1.el6_5
fixed
java-1.6.0-ibm-demo
RHEL 6
1:1.6.0.16.0-1jpp.1.el6_5
fixed
java-1.6.0-ibm-devel
RHEL 6
1:1.6.0.16.0-1jpp.1.el6_5
fixed
java-1.6.0-ibm-javacomm
RHEL 6
1:1.6.0.16.0-1jpp.1.el6_5
fixed
java-1.6.0-ibm-jdbc
RHEL 6
1:1.6.0.16.0-1jpp.1.el6_5
fixed
java-1.6.0-ibm-plugin
RHEL 6
1:1.6.0.16.0-1jpp.1.el6_5
fixed
java-1.6.0-ibm-src
RHEL 6
1:1.6.0.16.0-1jpp.1.el6_5
fixed
java-1.6.0-openjdk
RHEL 6
1:1.6.0.0-5.1.13.3.el6_5
fixed
RHEL 7
1:1.6.0.0-6.1.13.3.el7_0
fixed
java-1.6.0-openjdk-demo
RHEL 6
1:1.6.0.0-5.1.13.3.el6_5
fixed
RHEL 7
1:1.6.0.0-6.1.13.3.el7_0
fixed
java-1.6.0-openjdk-devel
RHEL 6
1:1.6.0.0-5.1.13.3.el6_5
fixed
RHEL 7
1:1.6.0.0-6.1.13.3.el7_0
fixed
java-1.6.0-openjdk-javadoc
RHEL 6
1:1.6.0.0-5.1.13.3.el6_5
fixed
RHEL 7
1:1.6.0.0-6.1.13.3.el7_0
fixed
java-1.6.0-openjdk-src
RHEL 6
1:1.6.0.0-5.1.13.3.el6_5
fixed
RHEL 7
1:1.6.0.0-6.1.13.3.el7_0
fixed
java-1.7.0-ibm
RHEL 6
1:1.7.0.7.0-1jpp.1.el6_5
fixed
java-1.7.0-ibm-demo
RHEL 6
1:1.7.0.7.0-1jpp.1.el6_5
fixed
java-1.7.0-ibm-devel
RHEL 6
1:1.7.0.7.0-1jpp.1.el6_5
fixed
java-1.7.0-ibm-jdbc
RHEL 6
1:1.7.0.7.0-1jpp.1.el6_5
fixed
java-1.7.0-ibm-plugin
RHEL 6
1:1.7.0.7.0-1jpp.1.el6_5
fixed
java-1.7.0-ibm-src
RHEL 6
1:1.7.0.7.0-1jpp.1.el6_5
fixed
java-1.7.0-openjdk
RHEL 6
1:1.7.0.55-2.4.7.1.el6_5
fixed
RHEL 7
1:1.7.0.55-2.4.7.2.el7_0
fixed
java-1.7.0-openjdk-accessibility
RHEL 7
1:1.7.0.55-2.4.7.2.el7_0
fixed
java-1.7.0-openjdk-demo
RHEL 6
1:1.7.0.55-2.4.7.1.el6_5
fixed
RHEL 7
1:1.7.0.55-2.4.7.2.el7_0
fixed
java-1.7.0-openjdk-devel
RHEL 6
1:1.7.0.55-2.4.7.1.el6_5
fixed
RHEL 7
1:1.7.0.55-2.4.7.2.el7_0
fixed
java-1.7.0-openjdk-headless
RHEL 7
1:1.7.0.55-2.4.7.2.el7_0
fixed
java-1.7.0-openjdk-javadoc
RHEL 6
1:1.7.0.55-2.4.7.1.el6_5
fixed
RHEL 7
1:1.7.0.55-2.4.7.2.el7_0
fixed
java-1.7.0-openjdk-src
RHEL 6
1:1.7.0.55-2.4.7.1.el6_5
fixed
RHEL 7
1:1.7.0.55-2.4.7.2.el7_0
fixed
java-1.7.0-oracle
RHEL 6
1:1.7.0.55-1jpp.1.el6_5
fixed
java-1.7.0-oracle-devel
RHEL 6
1:1.7.0.55-1jpp.1.el6_5
fixed
java-1.7.0-oracle-javafx
RHEL 6
1:1.7.0.55-1jpp.1.el6_5
fixed
java-1.7.0-oracle-jdbc
RHEL 6
1:1.7.0.55-1jpp.1.el6_5
fixed
java-1.7.0-oracle-plugin
RHEL 6
1:1.7.0.55-1jpp.1.el6_5
fixed
java-1.7.0-oracle-src
RHEL 6
1:1.7.0.55-1jpp.1.el6_5
fixed
java-1.7.1-ibm
RHEL 7
1:1.7.1.1.0-1jpp.2.el7_0
fixed
java-1.7.1-ibm-demo
RHEL 7
1:1.7.1.1.0-1jpp.2.el7_0
fixed
java-1.7.1-ibm-devel
RHEL 7
1:1.7.1.1.0-1jpp.2.el7_0
fixed
java-1.7.1-ibm-jdbc
RHEL 7
1:1.7.1.1.0-1jpp.2.el7_0
fixed
java-1.7.1-ibm-plugin
RHEL 7
1:1.7.1.1.0-1jpp.2.el7_0
fixed
java-1.7.1-ibm-src
RHEL 7
1:1.7.1.1.0-1jpp.2.el7_0
fixed
References