CVE-2015-4902

EUVD-2015-4919
Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60 allows remote attackers to affect integrity via unknown vectors related to Deployment.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
5.3 MEDIUM
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
CISA-ADPADP
5.3 MEDIUM
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 91%
Affected Products (NVD)
VendorProductVersion
oraclejdk
1.6.0
oraclejdk
1.7.0
oraclejdk
1.8.0
oraclejre
1.6.0
oraclejre
1.7.0
oraclejre
1.8.0
redhatsatellite
5.6
redhatsatellite
5.7
redhatenterprise_linux_desktop
5.0
redhatenterprise_linux_desktop
6.0
redhatenterprise_linux_desktop
7.0
redhatenterprise_linux_eus
6.7
redhatenterprise_linux_eus
7.2
redhatenterprise_linux_eus
7.3
redhatenterprise_linux_eus
7.4
redhatenterprise_linux_eus
7.5
redhatenterprise_linux_eus_compute_node
7.2
redhatenterprise_linux_eus_compute_node
7.3
redhatenterprise_linux_for_ibm_z_systems
5.0_s390x:_s390x
redhatenterprise_linux_for_ibm_z_systems
6.0_s390x:_s390x
redhatenterprise_linux_for_ibm_z_systems
7.0_s390x:_s390x
redhatenterprise_linux_for_ibm_z_systems_eus
6.7_s390x:_s390x
redhatenterprise_linux_for_ibm_z_systems_eus
7.2_s390x:_s390x
redhatenterprise_linux_for_ibm_z_systems_eus
7.3_s390x:_s390x
redhatenterprise_linux_for_ibm_z_systems_eus
7.4_s390x:_s390x
redhatenterprise_linux_for_ibm_z_systems_eus
7.5_s390x:_s390x
redhatenterprise_linux_for_power_big_endian
5.0_ppc:_ppc
redhatenterprise_linux_for_power_big_endian
6.0_ppc64:_ppc64
redhatenterprise_linux_for_power_big_endian
7.0_ppc64:_ppc64
redhatenterprise_linux_for_power_big_endian_eus
6.7_ppc64:_ppc64
redhatenterprise_linux_for_power_big_endian_eus
7.2_ppc64:_ppc64
redhatenterprise_linux_for_power_big_endian_eus
7.3_ppc64:_ppc64
redhatenterprise_linux_for_power_big_endian_eus
7.4_ppc64:_ppc64
redhatenterprise_linux_for_power_big_endian_eus
7.5_ppc64:_ppc64
redhatenterprise_linux_for_power_little_endian
7.0_ppc64le:_ppc64le
redhatenterprise_linux_for_power_little_endian_eus
7.2_ppc64le:_ppc64le
redhatenterprise_linux_for_power_little_endian_eus
7.3_ppc64le:_ppc64le
redhatenterprise_linux_for_power_little_endian_eus
7.4_ppc64le:_ppc64le
redhatenterprise_linux_for_power_little_endian_eus
7.5_ppc64le:_ppc64le
redhatenterprise_linux_for_scientific_computing
6.0
redhatenterprise_linux_for_scientific_computing
7.0
redhatenterprise_linux_server
5.0
redhatenterprise_linux_server
6.0
redhatenterprise_linux_server
7.0
redhatenterprise_linux_server_from_rhui
5.0
redhatenterprise_linux_server_from_rhui
6.0
redhatenterprise_linux_server_from_rhui
7.0
redhatenterprise_linux_workstation
5.0
redhatenterprise_linux_workstation
6.0
redhatenterprise_linux_workstation
7.0
opensuseleap
42.1
opensuseopensuse
13.2
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
openjdk-8
sid
8u432-b06-2
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
openjdk-6
precise
not-affected
trusty
dne
vivid
not-affected
wily
not-affected
openjdk-7
precise
not-affected
trusty
dne
vivid
not-affected
wily
not-affected
openjdk-8
precise
dne
trusty
dne
vivid
not-affected
wily
not-affected
References