VYPR
Unrated severityNVD Advisory· Published Oct 19, 2011· Updated Apr 29, 2026

CVE-2011-3560

CVE-2011-3560

Description

Unspecified vulnerability in the Java Runtime Environment component in Oracle Java SE JDK and JRE 7, 6 Update 27 and earlier, 5.0 Update 31 and earlier, and 1.4.2_33 and earlier allows remote untrusted Java Web Start applications and untrusted Java applets to affect confidentiality and integrity, related to JSSE.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

An unspecified vulnerability in Oracle Java SE JSSE allows untrusted applets and Web Start applications to compromise confidentiality and integrity.

Vulnerability

An unspecified vulnerability exists in the Java Runtime Environment's JSSE (Java Secure Socket Extension) component across multiple Oracle Java SE versions. Affected versions include JDK and JRE 7, 6 Update 27 and earlier, 5.0 Update 31 and earlier, and 1.4.2_33 and earlier [1]. The vulnerability can be triggered by remote untrusted Java Web Start applications or untrusted Java applets.

Exploitation

An attacker can exploit this vulnerability by hosting a malicious Java applet or Java Web Start application on a web page or by embedding it in an email or other delivery mechanism. No authentication or special network position is required beyond the ability to convince a user to run the malicious Java code. The vulnerability is remotely exploitable without user interaction beyond the typical execution of Java content in a browser or through Web Start [1].

Impact

Successful exploitation allows the attacker to affect the confidentiality and integrity of the affected system. The exact impact is unspecified but may allow disclosure of sensitive information or modification of data with the privileges of the user running the Java application [1].

Mitigation

Oracle released security updates in its Critical Patch Update for October 2011 to address this vulnerability. For IBM Java, the fix is included in version 1.5.0 SR13-FP1 [1]. HP also addressed the issue in HP-UX Java JRE and JDK [4]. Users should apply the latest patches from their Java vendor. If patching is not possible, consider disabling Java content in web browsers as a workaround.

AI Insight generated on May 24, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.

Affected products

216
  • Sun Corporation/Jdk94 versions
    cpe:2.3:a:sun:jdk:*:*:*:*:*:*:*:*+ 93 more
    • cpe:2.3:a:sun:jdk:*:*:*:*:*:*:*:*range: <=1.4.2_33
    • cpe:2.3:a:sun:jdk:1.4.2:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.4.2_1:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.4.2_10:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.4.2_11:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.4.2_12:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.4.2_13:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.4.2_14:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.4.2_15:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.4.2_16:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.4.2_17:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.4.2_18:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.4.2_19:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.4.2_2:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.4.2_20:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.4.2_21:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.4.2_22:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.4.2_23:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.4.2_24:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.4.2_25:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.4.2_26:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.4.2_27:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.4.2_28:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.4.2_29:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.4.2_3:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.4.2_30:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.4.2_31:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.4.2_32:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.4.2_4:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.4.2_5:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.4.2_6:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.4.2_7:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.4.2_8:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.4.2_9:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.5.0:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.5.0:update1:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.5.0:update10:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.5.0:update11:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.5.0:update11_b03:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.5.0:update12:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.5.0:update13:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.5.0:update14:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.5.0:update15:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.5.0:update16:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.5.0:update17:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.5.0:update18:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.5.0:update19:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.5.0:update2:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.5.0:update20:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.5.0:update21:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.5.0:update22:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.5.0:update23:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.5.0:update24:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.5.0:update25:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.5.0:update26:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.5.0:update27:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.5.0:update28:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.5.0:update29:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.5.0:update3:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.5.0:update4:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.5.0:update5:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.5.0:update6:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.5.0:update7:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.5.0:update7_b03:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.5.0:update8:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.5.0:update9:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.6.0:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.6.0:update1:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.6.0:update_10:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.6.0:update_11:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.6.0:update_12:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.6.0:update_13:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.6.0:update_14:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.6.0:update_15:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.6.0:update_16:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.6.0:update_17:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.6.0:update_18:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.6.0:update_19:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.6.0:update2:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.6.0:update_20:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.6.0:update_21:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.6.0:update_22:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.6.0:update_23:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.6.0:update_24:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.6.0:update_25:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.6.0:update_26:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.6.0:update_3:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.6.0:update_4:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.6.0:update_5:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.6.0:update_6:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.6.0:update_7:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:1.7.0:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jdk:*:update_27:*:*:*:*:*:*range: <=1.6.0
    • cpe:2.3:a:sun:jdk:*:update31:*:*:*:*:*:*range: <=1.5.0
  • Sun Corporation/Jre91 versions
    cpe:2.3:a:sun:jre:*:*:*:*:*:*:*:*+ 90 more
    • cpe:2.3:a:sun:jre:*:*:*:*:*:*:*:*range: <=1.4.2_33
    • cpe:2.3:a:sun:jre:1.4.2:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.4.2_1:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.4.2_10:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.4.2_11:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.4.2_12:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.4.2_13:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.4.2_14:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.4.2_15:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.4.2_16:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.4.2_17:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.4.2_18:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.4.2_19:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.4.2_2:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.4.2_20:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.4.2_21:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.4.2_22:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.4.2_23:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.4.2_24:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.4.2_25:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.4.2_26:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.4.2_27:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.4.2_28:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.4.2_29:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.4.2_3:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.4.2_30:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.4.2_31:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.4.2_32:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.4.2_4:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.4.2_5:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.4.2_6:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.4.2_7:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.4.2_8:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.4.2_9:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.5.0:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.5.0:update1:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.5.0:update10:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.5.0:update11:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.5.0:update12:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.5.0:update13:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.5.0:update14:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.5.0:update15:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.5.0:update16:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.5.0:update17:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.5.0:update18:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.5.0:update19:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.5.0:update2:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.5.0:update20:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.5.0:update21:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.5.0:update22:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.5.0:update23:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.5.0:update24:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.5.0:update25:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.5.0:update26:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.5.0:update27:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.5.0:update29:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.5.0:update3:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.5.0:update4:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.5.0:update5:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.5.0:update6:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.5.0:update7:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.5.0:update8:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.5.0:update9:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.6.0:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.6.0:update_1:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.6.0:update_10:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.6.0:update_11:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.6.0:update_12:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.6.0:update_13:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.6.0:update_14:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.6.0:update_15:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.6.0:update_16:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.6.0:update_17:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.6.0:update_18:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.6.0:update_19:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.6.0:update_2:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.6.0:update_20:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.6.0:update_21:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.6.0:update_22:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.6.0:update_23:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.6.0:update_24:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.6.0:update_25:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.6.0:update_26:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.6.0:update_3:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.6.0:update_4:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.6.0:update_5:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.6.0:update_6:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.6.0:update_7:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:1.7.0:*:*:*:*:*:*:*
    • cpe:2.3:a:sun:jre:*:update_27:*:*:*:*:*:*range: <=1.6.0
    • cpe:2.3:a:sun:jre:*:update31:*:*:*:*:*:*range: <=1.5.0
  • Range: <7, <=6u27, <=5.0u31, <=1.4.2_33
  • osv-coords30 versions
    < 0.53.0-r0+ 29 more
    • (no CPE)range: < 0.53.0-r0
    • (no CPE)range: < 0.53.0-r0
    • (no CPE)range: < 0.53.0-r0
    • (no CPE)range: < 0.53.0-r0
    • (no CPE)range: < 0.53.0-r0
    • (no CPE)range: < 0.53.0-r0
    • (no CPE)range: < 0.53.0-r0
    • (no CPE)range: < 0.53.0-r0
    • (no CPE)range: < 0.53.0-r0
    • (no CPE)range: < 0.53.0-r0
    • (no CPE)range: < 0.53.0-r0
    • (no CPE)range: < 0.53.0-r0
    • (no CPE)range: < 0.53.0-r0
    • (no CPE)range: < 0.53.0-r0
    • (no CPE)range: < 0.53.0-r0
    • (no CPE)range: < 0.53.0-r0
    • (no CPE)range: < 0.53.0-r0
    • (no CPE)range: < 0.53.0-r0
    • (no CPE)range: < 0.53.0-r0
    • (no CPE)range: < 0.53.0-r0
    • (no CPE)range: < 0.53.0-r0
    • (no CPE)range: < 0.53.0-r0
    • (no CPE)range: < 0.53.0-r0
    • (no CPE)range: < 0.53.0-r0
    • (no CPE)range: < 0.53.0-r1
    • (no CPE)range: < 0.53.0-r1
    • (no CPE)range: < 0.53.0-r1
    • (no CPE)range: < 0.53.0-r1
    • (no CPE)range: < 0.53.0-r1
    • (no CPE)range: < 0.53.0-r1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

26

News mentions

0

No linked articles in our index yet.