Oracle

Openjdk

98 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.61%
  • Published 14.05.2014 00:55:07
  • Last modified 12.04.2025 10:46:40

Unspecified vulnerability in OpenJDK 6 before 6b31 on Debian GNU/Linux and Ubuntu 12.04 LTS and 10.04 LTS has unknown impact and attack vectors, a different vulnerability than CVE-2014-2405.

  • EPSS 0.12%
  • Published 10.02.2014 23:55:05
  • Last modified 11.04.2025 00:51:21

The unpacker::redirect_stdio function in unpack.cpp in unpack200 in OpenJDK 6, 7, and 8; Oracle Java SE 5.0u61, 6u71, 7u51, and 8; JRockit R27.8.1 and R28.3.1; and Java SE Embedded 7u51 does not securely create temporary files when a log file cannot ...

  • EPSS 64.06%
  • Published 18.06.2013 22:55:02
  • Last modified 11.04.2025 00:51:21

Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 21 and earlier and 6 Update 45 and earlier; the Oracle JRockit component in Oracle Fusion Middleware R27.7.5 and earlier and R28.2.7 and earlier; and...

  • EPSS 1.08%
  • Published 08.02.2013 19:55:01
  • Last modified 11.04.2025 00:51:21

The TLS protocol 1.1 and 1.2 and the DTLS protocol 1.0 and 1.2, as used in OpenSSL, OpenJDK, PolarSSL, and other products, do not properly consider timing side-channel attacks on a MAC check requirement during the processing of malformed CBC padding,...

Warning
  • EPSS 91.59%
  • Published 31.01.2013 14:55:01
  • Last modified 11.04.2025 00:51:21

Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 through Update 11, and OpenJDK 7, allows user-assisted remote attackers to bypass the Java security sandbox via unspecified vectors related to JMX, aka "Iss...

  • EPSS 0.51%
  • Published 28.11.2012 13:03:10
  • Last modified 11.04.2025 00:51:21

Oracle Java SE 7 and earlier, and OpenJDK 7 and earlier, computes hash values without properly restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service (CPU consumption) via...

Exploit
  • EPSS 1.05%
  • Published 28.11.2012 13:03:09
  • Last modified 11.04.2025 00:51:21

Oracle Java SE before 7 Update 6, and OpenJDK 7 before 7u6 build 12 and 8 before build 39, computes hash values without restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of serv...

Exploit
  • EPSS 2.12%
  • Published 23.03.2009 14:19:12
  • Last modified 09.04.2025 00:30:58

Memory leak in LittleCMS (aka lcms or liblcms) before 1.18beta2, as used in Firefox 3.1beta, OpenJDK, and GIMP, allows context-dependent attackers to cause a denial of service (memory consumption and application crash) via a crafted image file.