rpm package
opensuse/java-1_8_0-openjdk&distro=openSUSE Tumbleweed
pkg:rpm/opensuse/java-1_8_0-openjdk&distro=openSUSE%20Tumbleweed
Vulnerabilities (360)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2016-5556 | Cri | 9.6 | < 1.8.0.111-1.1 | 1.8.0.111-1.1 | Oct 25, 2016 | Unspecified vulnerability in Oracle Java SE 6u121, 7u111, and 8u102 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to 2D. | |
| CVE-2016-5554 | Med | 4.3 | < 1.8.0.111-1.1 | 1.8.0.111-1.1 | Oct 25, 2016 | Unspecified vulnerability in Oracle Java SE 6u121, 7u111, 8u102; and Java SE Embedded 8u101 allows remote attackers to affect integrity via vectors related to JMX. | |
| CVE-2016-5542 | Low | 3.1 | < 1.8.0.111-1.1 | 1.8.0.111-1.1 | Oct 25, 2016 | Unspecified vulnerability in Oracle Java SE 6u121, 7u111, 8u102; and Java SE Embedded 8u101 allows remote attackers to affect integrity via vectors related to Libraries. | |
| CVE-2016-2183 | Hig | 7.5 | < 1.8.0.302-2.2 | 1.8.0.302-2.2 | Sep 1, 2016 | The DES and Triple DES ciphers, as used in the TLS, SSH, and IPSec protocols and other protocols and products, have a birthday bound of approximately four billion blocks, which makes it easier for remote attackers to obtain cleartext data via a birthday attack against a long-dura | |
| CVE-2016-3610 | Cri | 9.6 | < 1.8.0.111-1.1 | 1.8.0.111-1.1 | Jul 21, 2016 | Unspecified vulnerability in Oracle Java SE 8u92 and Java SE Embedded 8u91 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Libraries, a different vulnerability than CVE-2016-3598. | |
| CVE-2016-3606 | Cri | 9.6 | < 1.8.0.111-1.1 | 1.8.0.111-1.1 | Jul 21, 2016 | Unspecified vulnerability in Oracle Java SE 7u101 and 8u92 and Java SE Embedded 8u91 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Hotspot. | |
| CVE-2016-3598 | Cri | 9.6 | < 1.8.0.111-1.1 | 1.8.0.111-1.1 | Jul 21, 2016 | Unspecified vulnerability in Oracle Java SE 8u92 and Java SE Embedded 8u91 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Libraries, a different vulnerability than CVE-2016-3610. | |
| CVE-2016-3587 | Cri | 9.6 | < 1.8.0.111-1.1 | 1.8.0.111-1.1 | Jul 21, 2016 | Unspecified vulnerability in Oracle Java SE 8u92 and Java SE Embedded 8u91 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Hotspot. | |
| CVE-2016-3552 | Hig | 8.1 | < 1.8.0.111-1.1 | 1.8.0.111-1.1 | Jul 21, 2016 | Unspecified vulnerability in Oracle Java SE 8u92 allows local users to affect confidentiality, integrity, and availability via vectors related to Install. | |
| CVE-2016-3550 | Med | 4.3 | < 1.8.0.111-1.1 | 1.8.0.111-1.1 | Jul 21, 2016 | Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92 and Java SE Embedded 8u91 allows remote attackers to affect confidentiality via vectors related to Hotspot. | |
| CVE-2016-3511 | Hig | 7.7 | < 1.8.0.111-1.1 | 1.8.0.111-1.1 | Jul 21, 2016 | Unspecified vulnerability in Oracle Java SE 7u101 and 8u92 allows local users to affect confidentiality, integrity, and availability via vectors related to Deployment. | |
| CVE-2016-3508 | Med | 5.3 | < 1.8.0.111-1.1 | 1.8.0.111-1.1 | Jul 21, 2016 | Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92; Java SE Embedded 8u91; and JRockit R28.3.10 allows remote attackers to affect availability via vectors related to JAXP, a different vulnerability than CVE-2016-3500. | |
| CVE-2016-3503 | Hig | 7.7 | < 1.8.0.111-1.1 | 1.8.0.111-1.1 | Jul 21, 2016 | Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92 allows local users to affect confidentiality, integrity, and availability via vectors related to Install. | |
| CVE-2016-3500 | Med | 5.3 | < 1.8.0.111-1.1 | 1.8.0.111-1.1 | Jul 21, 2016 | Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92; Java SE Embedded 8u91; and JRockit R28.3.10 allows remote attackers to affect availability via vectors related to JAXP, a different vulnerability than CVE-2016-3508. | |
| CVE-2016-3498 | Med | 5.3 | < 1.8.0.111-1.1 | 1.8.0.111-1.1 | Jul 21, 2016 | Unspecified vulnerability in Oracle Java SE 7u101 and 8u92 allows remote attackers to affect availability via vectors related to JavaFX. | |
| CVE-2016-3485 | Low | 2.9 | < 1.8.0.111-1.1 | 1.8.0.111-1.1 | Jul 21, 2016 | Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92; Java SE Embedded 8u91; and JRockit R28.3.10 allows local users to affect integrity via vectors related to Networking. | |
| CVE-2016-3458 | Med | 4.3 | < 1.8.0.111-1.1 | 1.8.0.111-1.1 | Jul 21, 2016 | Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92; and Java SE Embedded 8u91 allows remote attackers to affect integrity via vectors related to CORBA. | |
| CVE-2016-3427 | Cri | 9.8 | KEV | < 1.8.0.111-1.1 | 1.8.0.111-1.1 | Apr 21, 2016 | Unspecified vulnerability in Oracle Java SE 6u113, 7u99, and 8u77; Java SE Embedded 8u77; and JRockit R28.3.9 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to JMX. |
| CVE-2016-3426 | Low | 3.1 | < 1.8.0.111-1.1 | 1.8.0.111-1.1 | Apr 21, 2016 | Unspecified vulnerability in Oracle Java SE 8u77 and Java SE Embedded 8u77 allows remote attackers to affect confidentiality via vectors related to JCE. | |
| CVE-2016-3425 | Med | 4.3 | < 1.8.0.111-1.1 | 1.8.0.111-1.1 | Apr 21, 2016 | Unspecified vulnerability in Oracle Java SE 6u113, 7u99, and 8u77; Java SE Embedded 8u77; and JRockit R28.3.9 allows remote attackers to affect availability via vectors related to JAXP. |
- affected < 1.8.0.111-1.1fixed 1.8.0.111-1.1
Unspecified vulnerability in Oracle Java SE 6u121, 7u111, and 8u102 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to 2D.
- affected < 1.8.0.111-1.1fixed 1.8.0.111-1.1
Unspecified vulnerability in Oracle Java SE 6u121, 7u111, 8u102; and Java SE Embedded 8u101 allows remote attackers to affect integrity via vectors related to JMX.
- affected < 1.8.0.111-1.1fixed 1.8.0.111-1.1
Unspecified vulnerability in Oracle Java SE 6u121, 7u111, 8u102; and Java SE Embedded 8u101 allows remote attackers to affect integrity via vectors related to Libraries.
- affected < 1.8.0.302-2.2fixed 1.8.0.302-2.2
The DES and Triple DES ciphers, as used in the TLS, SSH, and IPSec protocols and other protocols and products, have a birthday bound of approximately four billion blocks, which makes it easier for remote attackers to obtain cleartext data via a birthday attack against a long-dura
- affected < 1.8.0.111-1.1fixed 1.8.0.111-1.1
Unspecified vulnerability in Oracle Java SE 8u92 and Java SE Embedded 8u91 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Libraries, a different vulnerability than CVE-2016-3598.
- affected < 1.8.0.111-1.1fixed 1.8.0.111-1.1
Unspecified vulnerability in Oracle Java SE 7u101 and 8u92 and Java SE Embedded 8u91 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Hotspot.
- affected < 1.8.0.111-1.1fixed 1.8.0.111-1.1
Unspecified vulnerability in Oracle Java SE 8u92 and Java SE Embedded 8u91 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Libraries, a different vulnerability than CVE-2016-3610.
- affected < 1.8.0.111-1.1fixed 1.8.0.111-1.1
Unspecified vulnerability in Oracle Java SE 8u92 and Java SE Embedded 8u91 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Hotspot.
- affected < 1.8.0.111-1.1fixed 1.8.0.111-1.1
Unspecified vulnerability in Oracle Java SE 8u92 allows local users to affect confidentiality, integrity, and availability via vectors related to Install.
- affected < 1.8.0.111-1.1fixed 1.8.0.111-1.1
Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92 and Java SE Embedded 8u91 allows remote attackers to affect confidentiality via vectors related to Hotspot.
- affected < 1.8.0.111-1.1fixed 1.8.0.111-1.1
Unspecified vulnerability in Oracle Java SE 7u101 and 8u92 allows local users to affect confidentiality, integrity, and availability via vectors related to Deployment.
- affected < 1.8.0.111-1.1fixed 1.8.0.111-1.1
Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92; Java SE Embedded 8u91; and JRockit R28.3.10 allows remote attackers to affect availability via vectors related to JAXP, a different vulnerability than CVE-2016-3500.
- affected < 1.8.0.111-1.1fixed 1.8.0.111-1.1
Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92 allows local users to affect confidentiality, integrity, and availability via vectors related to Install.
- affected < 1.8.0.111-1.1fixed 1.8.0.111-1.1
Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92; Java SE Embedded 8u91; and JRockit R28.3.10 allows remote attackers to affect availability via vectors related to JAXP, a different vulnerability than CVE-2016-3508.
- affected < 1.8.0.111-1.1fixed 1.8.0.111-1.1
Unspecified vulnerability in Oracle Java SE 7u101 and 8u92 allows remote attackers to affect availability via vectors related to JavaFX.
- affected < 1.8.0.111-1.1fixed 1.8.0.111-1.1
Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92; Java SE Embedded 8u91; and JRockit R28.3.10 allows local users to affect integrity via vectors related to Networking.
- affected < 1.8.0.111-1.1fixed 1.8.0.111-1.1
Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92; and Java SE Embedded 8u91 allows remote attackers to affect integrity via vectors related to CORBA.
- affected < 1.8.0.111-1.1fixed 1.8.0.111-1.1
Unspecified vulnerability in Oracle Java SE 6u113, 7u99, and 8u77; Java SE Embedded 8u77; and JRockit R28.3.9 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to JMX.
- affected < 1.8.0.111-1.1fixed 1.8.0.111-1.1
Unspecified vulnerability in Oracle Java SE 8u77 and Java SE Embedded 8u77 allows remote attackers to affect confidentiality via vectors related to JCE.
- affected < 1.8.0.111-1.1fixed 1.8.0.111-1.1
Unspecified vulnerability in Oracle Java SE 6u113, 7u99, and 8u77; Java SE Embedded 8u77; and JRockit R28.3.9 allows remote attackers to affect availability via vectors related to JAXP.
Page 15 of 18