Summary
This host is installed with Oracle Java SE JRE and is prone to multiple unspecified vulnerabilities.
Impact
Successful exploitation will allow remote attackers to execute arbitrary code or possibly other impacts.
Impact Level: System/Application.
Solution
Apply the patch from below link,
http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.html
Insight
Multiple flaws exists,
- Two unspecified errors related to the Deployment subcomponent.
- An unspecified error in the Hotspot subcomponent related to bytecode verification.
Affected
Oracle Java SE 6 update 75 and prior, 7 update 60 and prior, and 8 update 5.0 and prior on Windows
Detection
Get the installed version of Oracle Java SE JRE with the help of detect NVT and check it is vulnerable or not.
References
Severity
Classification
-
CVE CVE-2014-4219, CVE-2014-4227, CVE-2014-4265 -
CVSS Base Score: 10.0
AV:N/AC:L/Au:N/C:C/I:C/A:C
Related Vulnerabilities
- Adobe Acrobat and Reader PDF Handling Code Execution Vulnerability (Windows)
- Adobe Acrobat Multiple Vulnerabilities - 01 Jan14 (Mac OS X)
- Adobe Air Multiple Vulnerabilities - December12 (Mac OS X)
- Adobe Air Multiple Vulnerabilities -01 August 12 (Windows)
- Adobe AIR Multiple Vulnerabilities -02 April 13 (Mac OS X)