rpm package
suse/java-1_8_0-openjdk&distro=SUSE Linux Enterprise Desktop 12 SP1
pkg:rpm/suse/java-1_8_0-openjdk&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP1
Vulnerabilities (77)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2016-5582 | Cri | 9.6 | < 1.8.0.111-17.1 | 1.8.0.111-17.1 | Oct 25, 2016 | Unspecified vulnerability in Oracle Java SE 6u121, 7u111, 8u102; and Java SE Embedded 8u101 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Hotspot, a different vulnerability than CVE-2016-5573. | |
| CVE-2016-5573 | Hig | 8.3 | < 1.8.0.111-17.1 | 1.8.0.111-17.1 | Oct 25, 2016 | Unspecified vulnerability in Oracle Java SE 6u121, 7u111, 8u102; and Java SE Embedded 8u101 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Hotspot, a different vulnerability than CVE-2016-5582. | |
| CVE-2016-5568 | Cri | 9.6 | < 1.8.0.111-17.1 | 1.8.0.111-17.1 | Oct 25, 2016 | Unspecified vulnerability in Oracle Java SE 6u121, 7u111, and 8u102 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to AWT. | |
| CVE-2016-5556 | Cri | 9.6 | < 1.8.0.111-17.1 | 1.8.0.111-17.1 | Oct 25, 2016 | Unspecified vulnerability in Oracle Java SE 6u121, 7u111, and 8u102 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to 2D. | |
| CVE-2016-5554 | Med | 4.3 | < 1.8.0.111-17.1 | 1.8.0.111-17.1 | Oct 25, 2016 | Unspecified vulnerability in Oracle Java SE 6u121, 7u111, 8u102; and Java SE Embedded 8u101 allows remote attackers to affect integrity via vectors related to JMX. | |
| CVE-2016-5542 | Low | 3.1 | < 1.8.0.111-17.1 | 1.8.0.111-17.1 | Oct 25, 2016 | Unspecified vulnerability in Oracle Java SE 6u121, 7u111, 8u102; and Java SE Embedded 8u101 allows remote attackers to affect integrity via vectors related to Libraries. | |
| CVE-2016-2183 | Hig | 7.5 | < 1.8.0.121-20.1 | 1.8.0.121-20.1 | Sep 1, 2016 | The DES and Triple DES ciphers, as used in the TLS, SSH, and IPSec protocols and other protocols and products, have a birthday bound of approximately four billion blocks, which makes it easier for remote attackers to obtain cleartext data via a birthday attack against a long-dura | |
| CVE-2016-3610 | Cri | 9.6 | < 1.8.0.101-14.3 | 1.8.0.101-14.3 | Jul 21, 2016 | Unspecified vulnerability in Oracle Java SE 8u92 and Java SE Embedded 8u91 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Libraries, a different vulnerability than CVE-2016-3598. | |
| CVE-2016-3606 | Cri | 9.6 | < 1.8.0.101-14.3 | 1.8.0.101-14.3 | Jul 21, 2016 | Unspecified vulnerability in Oracle Java SE 7u101 and 8u92 and Java SE Embedded 8u91 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Hotspot. | |
| CVE-2016-3598 | Cri | 9.6 | < 1.8.0.101-14.3 | 1.8.0.101-14.3 | Jul 21, 2016 | Unspecified vulnerability in Oracle Java SE 8u92 and Java SE Embedded 8u91 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Libraries, a different vulnerability than CVE-2016-3610. | |
| CVE-2016-3587 | Cri | 9.6 | < 1.8.0.101-14.3 | 1.8.0.101-14.3 | Jul 21, 2016 | Unspecified vulnerability in Oracle Java SE 8u92 and Java SE Embedded 8u91 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Hotspot. | |
| CVE-2016-3552 | Hig | 8.1 | < 1.8.0.101-14.3 | 1.8.0.101-14.3 | Jul 21, 2016 | Unspecified vulnerability in Oracle Java SE 8u92 allows local users to affect confidentiality, integrity, and availability via vectors related to Install. | |
| CVE-2016-3550 | Med | 4.3 | < 1.8.0.101-14.3 | 1.8.0.101-14.3 | Jul 21, 2016 | Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92 and Java SE Embedded 8u91 allows remote attackers to affect confidentiality via vectors related to Hotspot. | |
| CVE-2016-3511 | Hig | 7.7 | < 1.8.0.101-14.3 | 1.8.0.101-14.3 | Jul 21, 2016 | Unspecified vulnerability in Oracle Java SE 7u101 and 8u92 allows local users to affect confidentiality, integrity, and availability via vectors related to Deployment. | |
| CVE-2016-3508 | Med | 5.3 | < 1.8.0.101-14.3 | 1.8.0.101-14.3 | Jul 21, 2016 | Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92; Java SE Embedded 8u91; and JRockit R28.3.10 allows remote attackers to affect availability via vectors related to JAXP, a different vulnerability than CVE-2016-3500. | |
| CVE-2016-3503 | Hig | 7.7 | < 1.8.0.101-14.3 | 1.8.0.101-14.3 | Jul 21, 2016 | Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92 allows local users to affect confidentiality, integrity, and availability via vectors related to Install. | |
| CVE-2016-3500 | Med | 5.3 | < 1.8.0.101-14.3 | 1.8.0.101-14.3 | Jul 21, 2016 | Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92; Java SE Embedded 8u91; and JRockit R28.3.10 allows remote attackers to affect availability via vectors related to JAXP, a different vulnerability than CVE-2016-3508. | |
| CVE-2016-3498 | Med | 5.3 | < 1.8.0.101-14.3 | 1.8.0.101-14.3 | Jul 21, 2016 | Unspecified vulnerability in Oracle Java SE 7u101 and 8u92 allows remote attackers to affect availability via vectors related to JavaFX. | |
| CVE-2016-3485 | Low | 2.9 | < 1.8.0.101-14.3 | 1.8.0.101-14.3 | Jul 21, 2016 | Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92; Java SE Embedded 8u91; and JRockit R28.3.10 allows local users to affect integrity via vectors related to Networking. | |
| CVE-2016-3458 | Med | 4.3 | < 1.8.0.101-14.3 | 1.8.0.101-14.3 | Jul 21, 2016 | Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92; and Java SE Embedded 8u91 allows remote attackers to affect integrity via vectors related to CORBA. |
- affected < 1.8.0.111-17.1fixed 1.8.0.111-17.1
Unspecified vulnerability in Oracle Java SE 6u121, 7u111, 8u102; and Java SE Embedded 8u101 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Hotspot, a different vulnerability than CVE-2016-5573.
- affected < 1.8.0.111-17.1fixed 1.8.0.111-17.1
Unspecified vulnerability in Oracle Java SE 6u121, 7u111, 8u102; and Java SE Embedded 8u101 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Hotspot, a different vulnerability than CVE-2016-5582.
- affected < 1.8.0.111-17.1fixed 1.8.0.111-17.1
Unspecified vulnerability in Oracle Java SE 6u121, 7u111, and 8u102 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to AWT.
- affected < 1.8.0.111-17.1fixed 1.8.0.111-17.1
Unspecified vulnerability in Oracle Java SE 6u121, 7u111, and 8u102 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to 2D.
- affected < 1.8.0.111-17.1fixed 1.8.0.111-17.1
Unspecified vulnerability in Oracle Java SE 6u121, 7u111, 8u102; and Java SE Embedded 8u101 allows remote attackers to affect integrity via vectors related to JMX.
- affected < 1.8.0.111-17.1fixed 1.8.0.111-17.1
Unspecified vulnerability in Oracle Java SE 6u121, 7u111, 8u102; and Java SE Embedded 8u101 allows remote attackers to affect integrity via vectors related to Libraries.
- affected < 1.8.0.121-20.1fixed 1.8.0.121-20.1
The DES and Triple DES ciphers, as used in the TLS, SSH, and IPSec protocols and other protocols and products, have a birthday bound of approximately four billion blocks, which makes it easier for remote attackers to obtain cleartext data via a birthday attack against a long-dura
- affected < 1.8.0.101-14.3fixed 1.8.0.101-14.3
Unspecified vulnerability in Oracle Java SE 8u92 and Java SE Embedded 8u91 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Libraries, a different vulnerability than CVE-2016-3598.
- affected < 1.8.0.101-14.3fixed 1.8.0.101-14.3
Unspecified vulnerability in Oracle Java SE 7u101 and 8u92 and Java SE Embedded 8u91 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Hotspot.
- affected < 1.8.0.101-14.3fixed 1.8.0.101-14.3
Unspecified vulnerability in Oracle Java SE 8u92 and Java SE Embedded 8u91 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Libraries, a different vulnerability than CVE-2016-3610.
- affected < 1.8.0.101-14.3fixed 1.8.0.101-14.3
Unspecified vulnerability in Oracle Java SE 8u92 and Java SE Embedded 8u91 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Hotspot.
- affected < 1.8.0.101-14.3fixed 1.8.0.101-14.3
Unspecified vulnerability in Oracle Java SE 8u92 allows local users to affect confidentiality, integrity, and availability via vectors related to Install.
- affected < 1.8.0.101-14.3fixed 1.8.0.101-14.3
Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92 and Java SE Embedded 8u91 allows remote attackers to affect confidentiality via vectors related to Hotspot.
- affected < 1.8.0.101-14.3fixed 1.8.0.101-14.3
Unspecified vulnerability in Oracle Java SE 7u101 and 8u92 allows local users to affect confidentiality, integrity, and availability via vectors related to Deployment.
- affected < 1.8.0.101-14.3fixed 1.8.0.101-14.3
Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92; Java SE Embedded 8u91; and JRockit R28.3.10 allows remote attackers to affect availability via vectors related to JAXP, a different vulnerability than CVE-2016-3500.
- affected < 1.8.0.101-14.3fixed 1.8.0.101-14.3
Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92 allows local users to affect confidentiality, integrity, and availability via vectors related to Install.
- affected < 1.8.0.101-14.3fixed 1.8.0.101-14.3
Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92; Java SE Embedded 8u91; and JRockit R28.3.10 allows remote attackers to affect availability via vectors related to JAXP, a different vulnerability than CVE-2016-3508.
- affected < 1.8.0.101-14.3fixed 1.8.0.101-14.3
Unspecified vulnerability in Oracle Java SE 7u101 and 8u92 allows remote attackers to affect availability via vectors related to JavaFX.
- affected < 1.8.0.101-14.3fixed 1.8.0.101-14.3
Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92; Java SE Embedded 8u91; and JRockit R28.3.10 allows local users to affect integrity via vectors related to Networking.
- affected < 1.8.0.101-14.3fixed 1.8.0.101-14.3
Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92; and Java SE Embedded 8u91 allows remote attackers to affect integrity via vectors related to CORBA.
Page 3 of 4