rpm package
suse/java-1_8_0-ibm&distro=SUSE Linux Enterprise Software Development Kit 12 SP5
pkg:rpm/suse/java-1_8_0-ibm&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP5
Vulnerabilities (153)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2020-2654 | Low | 3.7 | < 1.8.0_sr6.10-30.69.1 | 1.8.0_sr6.10-30.69.1 | Jan 15, 2020 | Vulnerability in the Java SE product of Oracle Java SE (component: Libraries). Supported versions that are affected are Java SE: 7u241, 8u231, 11.0.5 and 13.0.1. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compr | |
| CVE-2020-2604 | Hig | 8.1 | < 1.8.0_sr6.5-30.63.1 | 1.8.0_sr6.5-30.63.1 | Jan 15, 2020 | Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Serialization). Supported versions that are affected are Java SE: 7u241, 8u231, 11.0.5 and 13.0.1; Java SE Embedded: 8u231. Difficult to exploit vulnerability allows unauthenticated attacker with | |
| CVE-2020-2593 | Med | 4.8 | < 1.8.0_sr6.5-30.63.1 | 1.8.0_sr6.5-30.63.1 | Jan 15, 2020 | Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Networking). Supported versions that are affected are Java SE: 7u241, 8u231, 11.0.5 and 13.0.1; Java SE Embedded: 8u231. Difficult to exploit vulnerability allows unauthenticated attacker with ne | |
| CVE-2020-2583 | Low | 3.7 | < 1.8.0_sr6.5-30.63.1 | 1.8.0_sr6.5-30.63.1 | Jan 15, 2020 | Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Serialization). Supported versions that are affected are Java SE: 7u241, 8u231, 11.0.5 and 13.0.1; Java SE Embedded: 8u231. Difficult to exploit vulnerability allows unauthenticated attacker with | |
| CVE-2019-17631 | Cri | 9.1 | < 1.8.0_sr6.0-30.60.1 | 1.8.0_sr6.0-30.60.1 | Oct 17, 2019 | From Eclipse OpenJ9 0.15 to 0.16, access to diagnostic operations such as causing a GC or creating a diagnostic file are permitted without any privilege checks. | |
| CVE-2019-2999 | Med | 4.7 | < 1.8.0_sr6.0-30.60.1 | 1.8.0_sr6.0-30.60.1 | Oct 16, 2019 | Vulnerability in the Java SE product of Oracle Java SE (component: Javadoc). Supported versions that are affected are Java SE: 7u231, 8u221, 11.0.4 and 13. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise | |
| CVE-2019-2996 | Med | 4.2 | < 1.8.0_sr6.0-30.60.1 | 1.8.0_sr6.0-30.60.1 | Oct 16, 2019 | Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Deployment). The supported version that is affected is Java SE: 8u221; Java SE Embedded: 8u221. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple | |
| CVE-2019-2992 | Low | 3.7 | < 1.8.0_sr6.0-30.60.1 | 1.8.0_sr6.0-30.60.1 | Oct 16, 2019 | Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: 2D). Supported versions that are affected are Java SE: 7u231, 8u221, 11.0.4 and 13; Java SE Embedded: 8u221. Difficult to exploit vulnerability allows unauthenticated attacker with network access | |
| CVE-2019-2989 | Med | 6.8 | < 1.8.0_sr6.0-30.60.1 | 1.8.0_sr6.0-30.60.1 | Oct 16, 2019 | Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Networking). Supported versions that are affected are Java SE: 7u231, 8u221, 11.0.4 and 13; Java SE Embedded: 8u221. Difficult to exploit vulnerability allows unauthenticated attacker with networ | |
| CVE-2019-2988 | Low | 3.7 | < 1.8.0_sr6.0-30.60.1 | 1.8.0_sr6.0-30.60.1 | Oct 16, 2019 | Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: 2D). Supported versions that are affected are Java SE: 7u231, 8u221, 11.0.4 and 13; Java SE Embedded: 8u221. Difficult to exploit vulnerability allows unauthenticated attacker with network access | |
| CVE-2019-2983 | Low | 3.7 | < 1.8.0_sr6.0-30.60.1 | 1.8.0_sr6.0-30.60.1 | Oct 16, 2019 | Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Serialization). Supported versions that are affected are Java SE: 7u231, 8u221, 11.0.4 and 13; Java SE Embedded: 8u221. Difficult to exploit vulnerability allows unauthenticated attacker with net | |
| CVE-2019-2981 | Low | 3.7 | < 1.8.0_sr6.0-30.60.1 | 1.8.0_sr6.0-30.60.1 | Oct 16, 2019 | Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: JAXP). Supported versions that are affected are Java SE: 7u231, 8u221, 11.0.4 and 13; Java SE Embedded: 8u221. Difficult to exploit vulnerability allows unauthenticated attacker with network acce | |
| CVE-2019-2978 | Low | 3.7 | < 1.8.0_sr6.0-30.60.1 | 1.8.0_sr6.0-30.60.1 | Oct 16, 2019 | Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Networking). Supported versions that are affected are Java SE: 7u231, 8u221, 11.0.4 and 13; Java SE Embedded: 8u221. Difficult to exploit vulnerability allows unauthenticated attacker with networ | |
| CVE-2019-2975 | Med | 4.8 | < 1.8.0_sr6.0-30.60.1 | 1.8.0_sr6.0-30.60.1 | Oct 16, 2019 | Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Scripting). Supported versions that are affected are Java SE: 8u221, 11.0.4 and 13; Java SE Embedded: 8u221. Difficult to exploit vulnerability allows unauthenticated attacker with network access | |
| CVE-2019-2973 | Low | 3.7 | < 1.8.0_sr6.0-30.60.1 | 1.8.0_sr6.0-30.60.1 | Oct 16, 2019 | Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: JAXP). Supported versions that are affected are Java SE: 7u231, 8u221, 11.0.4 and 13; Java SE Embedded: 8u221. Difficult to exploit vulnerability allows unauthenticated attacker with network acce | |
| CVE-2019-2964 | Low | 3.7 | < 1.8.0_sr6.0-30.60.1 | 1.8.0_sr6.0-30.60.1 | Oct 16, 2019 | Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Concurrency). Supported versions that are affected are Java SE: 7u231, 8u221, 11.0.4 and 13; Java SE Embedded: 8u221. Difficult to exploit vulnerability allows unauthenticated attacker with netwo | |
| CVE-2019-2962 | Low | 3.7 | < 1.8.0_sr6.0-30.60.1 | 1.8.0_sr6.0-30.60.1 | Oct 16, 2019 | Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: 2D). Supported versions that are affected are Java SE: 7u231, 8u221, 11.0.4 and 13; Java SE Embedded: 8u221. Difficult to exploit vulnerability allows unauthenticated attacker with network access | |
| CVE-2019-2958 | Med | 5.9 | < 1.8.0_sr6.0-30.60.1 | 1.8.0_sr6.0-30.60.1 | Oct 16, 2019 | Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Libraries). Supported versions that are affected are Java SE: 7u231, 8u221, 11.0.4 and 13; Java SE Embedded: 8u221. Difficult to exploit vulnerability allows unauthenticated attacker with network | |
| CVE-2019-2949 | Med | 6.8 | < 1.8.0_sr6.10-30.69.1 | 1.8.0_sr6.10-30.69.1 | Oct 16, 2019 | Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Kerberos). Supported versions that are affected are Java SE: 7u231, 8u221, 11.0.4 and 13; Java SE Embedded: 8u221. Difficult to exploit vulnerability allows unauthenticated attacker with network | |
| CVE-2019-2945 | Low | 3.1 | < 1.8.0_sr6.0-30.60.1 | 1.8.0_sr6.0-30.60.1 | Oct 16, 2019 | Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Networking). Supported versions that are affected are Java SE: 7u231, 8u221, 11.0.4 and 13; Java SE Embedded: 8u221. Difficult to exploit vulnerability allows unauthenticated attacker with networ |
- affected < 1.8.0_sr6.10-30.69.1fixed 1.8.0_sr6.10-30.69.1
Vulnerability in the Java SE product of Oracle Java SE (component: Libraries). Supported versions that are affected are Java SE: 7u241, 8u231, 11.0.5 and 13.0.1. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compr
- affected < 1.8.0_sr6.5-30.63.1fixed 1.8.0_sr6.5-30.63.1
Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Serialization). Supported versions that are affected are Java SE: 7u241, 8u231, 11.0.5 and 13.0.1; Java SE Embedded: 8u231. Difficult to exploit vulnerability allows unauthenticated attacker with
- affected < 1.8.0_sr6.5-30.63.1fixed 1.8.0_sr6.5-30.63.1
Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Networking). Supported versions that are affected are Java SE: 7u241, 8u231, 11.0.5 and 13.0.1; Java SE Embedded: 8u231. Difficult to exploit vulnerability allows unauthenticated attacker with ne
- affected < 1.8.0_sr6.5-30.63.1fixed 1.8.0_sr6.5-30.63.1
Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Serialization). Supported versions that are affected are Java SE: 7u241, 8u231, 11.0.5 and 13.0.1; Java SE Embedded: 8u231. Difficult to exploit vulnerability allows unauthenticated attacker with
- affected < 1.8.0_sr6.0-30.60.1fixed 1.8.0_sr6.0-30.60.1
From Eclipse OpenJ9 0.15 to 0.16, access to diagnostic operations such as causing a GC or creating a diagnostic file are permitted without any privilege checks.
- affected < 1.8.0_sr6.0-30.60.1fixed 1.8.0_sr6.0-30.60.1
Vulnerability in the Java SE product of Oracle Java SE (component: Javadoc). Supported versions that are affected are Java SE: 7u231, 8u221, 11.0.4 and 13. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise
- affected < 1.8.0_sr6.0-30.60.1fixed 1.8.0_sr6.0-30.60.1
Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Deployment). The supported version that is affected is Java SE: 8u221; Java SE Embedded: 8u221. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple
- affected < 1.8.0_sr6.0-30.60.1fixed 1.8.0_sr6.0-30.60.1
Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: 2D). Supported versions that are affected are Java SE: 7u231, 8u221, 11.0.4 and 13; Java SE Embedded: 8u221. Difficult to exploit vulnerability allows unauthenticated attacker with network access
- affected < 1.8.0_sr6.0-30.60.1fixed 1.8.0_sr6.0-30.60.1
Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Networking). Supported versions that are affected are Java SE: 7u231, 8u221, 11.0.4 and 13; Java SE Embedded: 8u221. Difficult to exploit vulnerability allows unauthenticated attacker with networ
- affected < 1.8.0_sr6.0-30.60.1fixed 1.8.0_sr6.0-30.60.1
Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: 2D). Supported versions that are affected are Java SE: 7u231, 8u221, 11.0.4 and 13; Java SE Embedded: 8u221. Difficult to exploit vulnerability allows unauthenticated attacker with network access
- affected < 1.8.0_sr6.0-30.60.1fixed 1.8.0_sr6.0-30.60.1
Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Serialization). Supported versions that are affected are Java SE: 7u231, 8u221, 11.0.4 and 13; Java SE Embedded: 8u221. Difficult to exploit vulnerability allows unauthenticated attacker with net
- affected < 1.8.0_sr6.0-30.60.1fixed 1.8.0_sr6.0-30.60.1
Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: JAXP). Supported versions that are affected are Java SE: 7u231, 8u221, 11.0.4 and 13; Java SE Embedded: 8u221. Difficult to exploit vulnerability allows unauthenticated attacker with network acce
- affected < 1.8.0_sr6.0-30.60.1fixed 1.8.0_sr6.0-30.60.1
Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Networking). Supported versions that are affected are Java SE: 7u231, 8u221, 11.0.4 and 13; Java SE Embedded: 8u221. Difficult to exploit vulnerability allows unauthenticated attacker with networ
- affected < 1.8.0_sr6.0-30.60.1fixed 1.8.0_sr6.0-30.60.1
Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Scripting). Supported versions that are affected are Java SE: 8u221, 11.0.4 and 13; Java SE Embedded: 8u221. Difficult to exploit vulnerability allows unauthenticated attacker with network access
- affected < 1.8.0_sr6.0-30.60.1fixed 1.8.0_sr6.0-30.60.1
Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: JAXP). Supported versions that are affected are Java SE: 7u231, 8u221, 11.0.4 and 13; Java SE Embedded: 8u221. Difficult to exploit vulnerability allows unauthenticated attacker with network acce
- affected < 1.8.0_sr6.0-30.60.1fixed 1.8.0_sr6.0-30.60.1
Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Concurrency). Supported versions that are affected are Java SE: 7u231, 8u221, 11.0.4 and 13; Java SE Embedded: 8u221. Difficult to exploit vulnerability allows unauthenticated attacker with netwo
- affected < 1.8.0_sr6.0-30.60.1fixed 1.8.0_sr6.0-30.60.1
Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: 2D). Supported versions that are affected are Java SE: 7u231, 8u221, 11.0.4 and 13; Java SE Embedded: 8u221. Difficult to exploit vulnerability allows unauthenticated attacker with network access
- affected < 1.8.0_sr6.0-30.60.1fixed 1.8.0_sr6.0-30.60.1
Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Libraries). Supported versions that are affected are Java SE: 7u231, 8u221, 11.0.4 and 13; Java SE Embedded: 8u221. Difficult to exploit vulnerability allows unauthenticated attacker with network
- affected < 1.8.0_sr6.10-30.69.1fixed 1.8.0_sr6.10-30.69.1
Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Kerberos). Supported versions that are affected are Java SE: 7u231, 8u221, 11.0.4 and 13; Java SE Embedded: 8u221. Difficult to exploit vulnerability allows unauthenticated attacker with network
- affected < 1.8.0_sr6.0-30.60.1fixed 1.8.0_sr6.0-30.60.1
Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Networking). Supported versions that are affected are Java SE: 7u231, 8u221, 11.0.4 and 13; Java SE Embedded: 8u221. Difficult to exploit vulnerability allows unauthenticated attacker with networ
Page 7 of 8