rpm package
opensuse/java-1_8_0-openjdk&distro=openSUSE Tumbleweed
pkg:rpm/opensuse/java-1_8_0-openjdk&distro=openSUSE%20Tumbleweed
Vulnerabilities (357)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2016-2183 | Hig | 7.5 | < 1.8.0.302-2.2 | 1.8.0.302-2.2 | Sep 1, 2016 | The DES and Triple DES ciphers, as used in the TLS, SSH, and IPSec protocols and other protocols and products, have a birthday bound of approximately four billion blocks, which makes it easier for remote attackers to obtain cleartext data via a birthday attack against a long-dura | |
| CVE-2016-3610 | Cri | 9.6 | < 1.8.0.111-1.1 | 1.8.0.111-1.1 | Jul 21, 2016 | Unspecified vulnerability in Oracle Java SE 8u92 and Java SE Embedded 8u91 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Libraries, a different vulnerability than CVE-2016-3598. | |
| CVE-2016-3606 | Cri | 9.6 | < 1.8.0.111-1.1 | 1.8.0.111-1.1 | Jul 21, 2016 | Unspecified vulnerability in Oracle Java SE 7u101 and 8u92 and Java SE Embedded 8u91 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Hotspot. | |
| CVE-2016-3598 | Cri | 9.6 | < 1.8.0.111-1.1 | 1.8.0.111-1.1 | Jul 21, 2016 | Unspecified vulnerability in Oracle Java SE 8u92 and Java SE Embedded 8u91 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Libraries, a different vulnerability than CVE-2016-3610. | |
| CVE-2016-3587 | Cri | 9.6 | < 1.8.0.111-1.1 | 1.8.0.111-1.1 | Jul 21, 2016 | Unspecified vulnerability in Oracle Java SE 8u92 and Java SE Embedded 8u91 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Hotspot. | |
| CVE-2016-3552 | Hig | 8.1 | < 1.8.0.111-1.1 | 1.8.0.111-1.1 | Jul 21, 2016 | Unspecified vulnerability in Oracle Java SE 8u92 allows local users to affect confidentiality, integrity, and availability via vectors related to Install. | |
| CVE-2016-3550 | Med | 4.3 | < 1.8.0.111-1.1 | 1.8.0.111-1.1 | Jul 21, 2016 | Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92 and Java SE Embedded 8u91 allows remote attackers to affect confidentiality via vectors related to Hotspot. | |
| CVE-2016-3511 | Hig | 7.7 | < 1.8.0.111-1.1 | 1.8.0.111-1.1 | Jul 21, 2016 | Unspecified vulnerability in Oracle Java SE 7u101 and 8u92 allows local users to affect confidentiality, integrity, and availability via vectors related to Deployment. | |
| CVE-2016-3508 | Med | 5.3 | < 1.8.0.111-1.1 | 1.8.0.111-1.1 | Jul 21, 2016 | Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92; Java SE Embedded 8u91; and JRockit R28.3.10 allows remote attackers to affect availability via vectors related to JAXP, a different vulnerability than CVE-2016-3500. | |
| CVE-2016-3503 | Hig | 7.7 | < 1.8.0.111-1.1 | 1.8.0.111-1.1 | Jul 21, 2016 | Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92 allows local users to affect confidentiality, integrity, and availability via vectors related to Install. | |
| CVE-2016-3500 | Med | 5.3 | < 1.8.0.111-1.1 | 1.8.0.111-1.1 | Jul 21, 2016 | Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92; Java SE Embedded 8u91; and JRockit R28.3.10 allows remote attackers to affect availability via vectors related to JAXP, a different vulnerability than CVE-2016-3508. | |
| CVE-2016-3498 | Med | 5.3 | < 1.8.0.111-1.1 | 1.8.0.111-1.1 | Jul 21, 2016 | Unspecified vulnerability in Oracle Java SE 7u101 and 8u92 allows remote attackers to affect availability via vectors related to JavaFX. | |
| CVE-2016-3485 | Low | 2.9 | < 1.8.0.111-1.1 | 1.8.0.111-1.1 | Jul 21, 2016 | Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92; Java SE Embedded 8u91; and JRockit R28.3.10 allows local users to affect integrity via vectors related to Networking. | |
| CVE-2016-3458 | Med | 4.3 | < 1.8.0.111-1.1 | 1.8.0.111-1.1 | Jul 21, 2016 | Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92; and Java SE Embedded 8u91 allows remote attackers to affect integrity via vectors related to CORBA. | |
| CVE-2016-3427 | Cri | 9.8 | KEV | < 1.8.0.111-1.1 | 1.8.0.111-1.1 | Apr 21, 2016 | Unspecified vulnerability in Oracle Java SE 6u113, 7u99, and 8u77; Java SE Embedded 8u77; and JRockit R28.3.9 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to JMX. |
| CVE-2016-3426 | Low | 3.1 | < 1.8.0.111-1.1 | 1.8.0.111-1.1 | Apr 21, 2016 | Unspecified vulnerability in Oracle Java SE 8u77 and Java SE Embedded 8u77 allows remote attackers to affect confidentiality via vectors related to JCE. | |
| CVE-2016-3425 | Med | 4.3 | < 1.8.0.111-1.1 | 1.8.0.111-1.1 | Apr 21, 2016 | Unspecified vulnerability in Oracle Java SE 6u113, 7u99, and 8u77; Java SE Embedded 8u77; and JRockit R28.3.9 allows remote attackers to affect availability via vectors related to JAXP. | |
| CVE-2016-0695 | Med | 5.9 | < 1.8.0.111-1.1 | 1.8.0.111-1.1 | Apr 21, 2016 | Unspecified vulnerability in Oracle Java SE 6u113, 7u99, and 8u77; Java SE Embedded 8u77; and JRockit R28.3.9 allows remote attackers to affect confidentiality via vectors related to Security. | |
| CVE-2016-0687 | Cri | 9.6 | < 1.8.0.111-1.1 | 1.8.0.111-1.1 | Apr 21, 2016 | Unspecified vulnerability in Oracle Java SE 6u113, 7u99, and 8u77 and Java SE Embedded 8u77 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to the Hotspot sub-component. | |
| CVE-2016-0686 | Cri | 9.6 | < 1.8.0.111-1.1 | 1.8.0.111-1.1 | Apr 21, 2016 | Unspecified vulnerability in Oracle Java SE 6u113, 7u99, and 8u77 and Java SE Embedded 8u77 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Serialization. |
- affected < 1.8.0.302-2.2fixed 1.8.0.302-2.2
The DES and Triple DES ciphers, as used in the TLS, SSH, and IPSec protocols and other protocols and products, have a birthday bound of approximately four billion blocks, which makes it easier for remote attackers to obtain cleartext data via a birthday attack against a long-dura
- affected < 1.8.0.111-1.1fixed 1.8.0.111-1.1
Unspecified vulnerability in Oracle Java SE 8u92 and Java SE Embedded 8u91 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Libraries, a different vulnerability than CVE-2016-3598.
- affected < 1.8.0.111-1.1fixed 1.8.0.111-1.1
Unspecified vulnerability in Oracle Java SE 7u101 and 8u92 and Java SE Embedded 8u91 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Hotspot.
- affected < 1.8.0.111-1.1fixed 1.8.0.111-1.1
Unspecified vulnerability in Oracle Java SE 8u92 and Java SE Embedded 8u91 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Libraries, a different vulnerability than CVE-2016-3610.
- affected < 1.8.0.111-1.1fixed 1.8.0.111-1.1
Unspecified vulnerability in Oracle Java SE 8u92 and Java SE Embedded 8u91 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Hotspot.
- affected < 1.8.0.111-1.1fixed 1.8.0.111-1.1
Unspecified vulnerability in Oracle Java SE 8u92 allows local users to affect confidentiality, integrity, and availability via vectors related to Install.
- affected < 1.8.0.111-1.1fixed 1.8.0.111-1.1
Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92 and Java SE Embedded 8u91 allows remote attackers to affect confidentiality via vectors related to Hotspot.
- affected < 1.8.0.111-1.1fixed 1.8.0.111-1.1
Unspecified vulnerability in Oracle Java SE 7u101 and 8u92 allows local users to affect confidentiality, integrity, and availability via vectors related to Deployment.
- affected < 1.8.0.111-1.1fixed 1.8.0.111-1.1
Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92; Java SE Embedded 8u91; and JRockit R28.3.10 allows remote attackers to affect availability via vectors related to JAXP, a different vulnerability than CVE-2016-3500.
- affected < 1.8.0.111-1.1fixed 1.8.0.111-1.1
Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92 allows local users to affect confidentiality, integrity, and availability via vectors related to Install.
- affected < 1.8.0.111-1.1fixed 1.8.0.111-1.1
Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92; Java SE Embedded 8u91; and JRockit R28.3.10 allows remote attackers to affect availability via vectors related to JAXP, a different vulnerability than CVE-2016-3508.
- affected < 1.8.0.111-1.1fixed 1.8.0.111-1.1
Unspecified vulnerability in Oracle Java SE 7u101 and 8u92 allows remote attackers to affect availability via vectors related to JavaFX.
- affected < 1.8.0.111-1.1fixed 1.8.0.111-1.1
Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92; Java SE Embedded 8u91; and JRockit R28.3.10 allows local users to affect integrity via vectors related to Networking.
- affected < 1.8.0.111-1.1fixed 1.8.0.111-1.1
Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92; and Java SE Embedded 8u91 allows remote attackers to affect integrity via vectors related to CORBA.
- affected < 1.8.0.111-1.1fixed 1.8.0.111-1.1
Unspecified vulnerability in Oracle Java SE 6u113, 7u99, and 8u77; Java SE Embedded 8u77; and JRockit R28.3.9 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to JMX.
- affected < 1.8.0.111-1.1fixed 1.8.0.111-1.1
Unspecified vulnerability in Oracle Java SE 8u77 and Java SE Embedded 8u77 allows remote attackers to affect confidentiality via vectors related to JCE.
- affected < 1.8.0.111-1.1fixed 1.8.0.111-1.1
Unspecified vulnerability in Oracle Java SE 6u113, 7u99, and 8u77; Java SE Embedded 8u77; and JRockit R28.3.9 allows remote attackers to affect availability via vectors related to JAXP.
- affected < 1.8.0.111-1.1fixed 1.8.0.111-1.1
Unspecified vulnerability in Oracle Java SE 6u113, 7u99, and 8u77; Java SE Embedded 8u77; and JRockit R28.3.9 allows remote attackers to affect confidentiality via vectors related to Security.
- affected < 1.8.0.111-1.1fixed 1.8.0.111-1.1
Unspecified vulnerability in Oracle Java SE 6u113, 7u99, and 8u77 and Java SE Embedded 8u77 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to the Hotspot sub-component.
- affected < 1.8.0.111-1.1fixed 1.8.0.111-1.1
Unspecified vulnerability in Oracle Java SE 6u113, 7u99, and 8u77 and Java SE Embedded 8u77 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Serialization.
Page 15 of 18