10
CVE-2015-2590
- EPSS 25.47%
- Veröffentlicht 16.07.2015 10:59:17
- Zuletzt bearbeitet 21.04.2026 18:07:25
- Erkennungen
Unspecified vulnerability in Oracle Java SE 6u95, 7u80, and 8u45, and Java SE Embedded 7u75 and 8u33 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries, a different vulnerability than CVE-2015-4732.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Canonical ≫ Ubuntu Linux Version 12.04 SwEdition -
Canonical ≫ Ubuntu Linux Version 14.04 SwEdition esm
Canonical ≫ Ubuntu Linux Version 15.04
Debian ≫ Debian Linux Version 7.0
Debian ≫ Debian Linux Version 8.0
Suse ≫ Linux Enterprise Debuginfo Version 11 Update sp3
Suse ≫ Linux Enterprise Debuginfo Version 11 Update sp4
Suse ≫ Linux Enterprise Desktop Version 11 Update sp3
Suse ≫ Linux Enterprise Desktop Version 11 Update sp4
Suse ≫ Linux Enterprise Desktop Version 12 Update -
Suse ≫ Linux Enterprise Server Version 12 Update -
Redhat ≫ Enterprise Linux Desktop Version 5.0
Redhat ≫ Enterprise Linux Desktop Version 6.0
Redhat ≫ Enterprise Linux Desktop Version 7.0
Redhat ≫ Enterprise Linux Eus Version 6.6
Redhat ≫ Enterprise Linux Eus Version 6.7
Redhat ≫ Enterprise Linux Eus Version 7.1
Redhat ≫ Enterprise Linux Eus Version 7.2
Redhat ≫ Enterprise Linux Eus Version 7.3
Redhat ≫ Enterprise Linux Eus Version 7.4
Redhat ≫ Enterprise Linux Eus Version 7.5
Redhat ≫ Enterprise Linux For Ibm Z Systems Version 6.0_s390x
Redhat ≫ Enterprise Linux For Ibm Z Systems Eus Version 6.7_s390x
Redhat ≫ Enterprise Linux For Ibm Z Systems Eus Version 7.1_s390x
Redhat ≫ Enterprise Linux For Ibm Z Systems Eus Version 7.2_s390x
Redhat ≫ Enterprise Linux For Ibm Z Systems Eus Version 7.3_s390x
Redhat ≫ Enterprise Linux For Ibm Z Systems Eus Version 7.4_s390x
Redhat ≫ Enterprise Linux For Ibm Z Systems Eus Version 7.5_s390x
Redhat ≫ Enterprise Linux For Power Big Endian Version 6.0_ppc64
Redhat ≫ Enterprise Linux For Power Big Endian Version 7.0_ppc64
Redhat ≫ Enterprise Linux For Power Big Endian Eus Version 6.7_ppc64
Redhat ≫ Enterprise Linux For Power Big Endian Eus Version 7.1_ppc64
Redhat ≫ Enterprise Linux For Power Big Endian Eus Version 7.2_ppc64
Redhat ≫ Enterprise Linux For Power Big Endian Eus Version 7.3_ppc64
Redhat ≫ Enterprise Linux For Power Big Endian Eus Version 7.4_ppc64
Redhat ≫ Enterprise Linux For Power Big Endian Eus Version 7.5_ppc64
Redhat ≫ Enterprise Linux For Power Little Endian Version 7.0_ppc64le
Redhat ≫ Enterprise Linux For Power Little Endian Eus Version 7.1_ppc64le
Redhat ≫ Enterprise Linux For Power Little Endian Eus Version 7.2_ppc64le
Redhat ≫ Enterprise Linux For Power Little Endian Eus Version 7.3_ppc64le
Redhat ≫ Enterprise Linux For Power Little Endian Eus Version 7.4_ppc64le
Redhat ≫ Enterprise Linux For Power Little Endian Eus Version 7.5_ppc64le
Redhat ≫ Enterprise Linux Server Version 5.0
Redhat ≫ Enterprise Linux Server Version 6.0
Redhat ≫ Enterprise Linux Server Version 7.0
Redhat ≫ Enterprise Linux Server Aus Version 6.6
Redhat ≫ Enterprise Linux Server Aus Version 7.3
Redhat ≫ Enterprise Linux Server Aus Version 7.4
Redhat ≫ Enterprise Linux Server Aus Version 7.6
Redhat ≫ Enterprise Linux Server Aus Version 7.7
Redhat ≫ Enterprise Linux Server Tus Version 6.6
Redhat ≫ Enterprise Linux Server Tus Version 7.3
Redhat ≫ Enterprise Linux Server Tus Version 7.6
Redhat ≫ Enterprise Linux Server Tus Version 7.7
Redhat ≫ Enterprise Linux Workstation Version 5.0
Redhat ≫ Enterprise Linux Workstation Version 6.0
Redhat ≫ Enterprise Linux Workstation Version 7.0
03.03.2022: CISA Known Exploited Vulnerabilities (KEV) Catalog
Oracle Java SE and Java SE Embedded Remote Code Execution Vulnerability
SchwachstelleAn unspecified vulnerability exists within Oracle Java Runtime Environment that allows an attacker to perform remote code execution.
BeschreibungApply updates per vendor instructions.
Erforderliche Maßnahmen| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 25.47% | 0.977 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 9.8 | 3.9 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
|
| NIST | 10 | 10 | 10 |
AV:N/AC:L/Au:N/C:C/I:C/A:C
|
| CISA-ADP | 9.8 | 3.9 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
|
http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html
https://security.gentoo.org/glsa/201603-14
https://security.gentoo.org/glsa/201603-11
http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00039.html
http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00040.html
http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00046.html
http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00047.html
http://rhn.redhat.com/errata/RHSA-2015-1228.html
http://rhn.redhat.com/errata/RHSA-2015-1229.html
http://rhn.redhat.com/errata/RHSA-2015-1230.html
http://rhn.redhat.com/errata/RHSA-2015-1241.html
http://rhn.redhat.com/errata/RHSA-2015-1242.html
http://rhn.redhat.com/errata/RHSA-2015-1243.html
http://rhn.redhat.com/errata/RHSA-2015-1526.html
http://www.debian.org/security/2015/dsa-3316
http://www.debian.org/security/2015/dsa-3339
http://www.securitytracker.com/id/1032910
http://www.ubuntu.com/usn/USN-2696-1
http://www.ubuntu.com/usn/USN-2706-1
http://rhn.redhat.com/errata/RHSA-2015-1485.html
http://rhn.redhat.com/errata/RHSA-2015-1486.html
http://rhn.redhat.com/errata/RHSA-2015-1488.html
http://rhn.redhat.com/errata/RHSA-2015-1544.html
http://rhn.redhat.com/errata/RHSA-2015-1604.html
http://www.securityfocus.com/bid/75818
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2015-2590