CVE-2014-6593

EUVD-2014-6472
Unspecified vulnerability in Oracle Java SE 5.0u75, 6u85, 7u72, and 8u25; Java SE Embedded 7u71 and 8u6; and JRockit 27.8.4 and 28.3.4 allows remote attackers to affect confidentiality and integrity via vectors related to JSSE.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
4 UNKNOWN
NETWORK
HIGH
AV:N/AC:H/Au:N/C:P/I:P/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 98%
Affected Products (NVD)
VendorProductVersion
oraclejrockit
r27.8.4
oraclejrockit
r28.3.4
oraclejdk
1.5.0
oraclejdk
1.6.0
oraclejdk
1.7.0
oraclejdk
1.7.0
oraclejdk
1.8.0
oraclejdk
1.8.0
oraclejre
1.5.0
oraclejre
1.6.0
oraclejre
1.7.0
oraclejre
1.7.0
oraclejre
1.8.0
oraclejre
1.8.0
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
openjdk-8
sid
8u432-b06-2
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
openjdk-6
lucid
Fixed 6b34-1.13.6-1ubuntu0.10.04.1
released
precise
Fixed 6b34-1.13.6-1ubuntu0.12.04.1
released
trusty
Fixed 6b34-1.13.6-1ubuntu0.14.04.1
released
utopic
Fixed 6b34-1.13.6-1ubuntu0.14.10.1
released
openjdk-7
lucid
dne
precise
Fixed 7u75-2.5.4-1~precise1
released
trusty
Fixed 7u75-2.5.4-1~trusty1
released
utopic
Fixed 7u75-2.5.4-1~utopic1
released
openjdk-8
lucid
dne
precise
dne
trusty
dne
utopic
not-affected
References