{"api_version":"1","generated_at":"2026-07-23T07:41:49+00:00","cve":"CVE-2014-0878","urls":{"html":"https://cve.report/CVE-2014-0878","api":"https://cve.report/api/cve/CVE-2014-0878.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2014-0878","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2014-0878"},"summary":{"title":"CVE-2014-0878","description":"The IBMSecureRandom component in the IBMJCE and IBMSecureRandom cryptographic providers in IBM SDK Java Technology Edition 5.0 before Service Refresh 16 FP6, 6 before Service Refresh 16, 6.0.1 before Service Refresh 8, 7 before Service Refresh 7, and 7R1 before Service Refresh 1 makes it easier for context-dependent attackers to defeat cryptographic protection mechanisms by predicting the random number generator's output.","state":"PUBLISHED","assigner":"ibm","published_at":"2014-05-26 19:55:04","updated_at":"2026-05-06 22:30:45"},"problem_types":["CWE-310","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"5.8","severity":"","vector":"AV:N/AC:M/Au:N/C:P/I:P/A:N","data":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:P/I:P/A:N","baseScore":5.8,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"NONE"}}],"references":[{"url":"http://www.securityfocus.com/bid/67601","name":"http://www.securityfocus.com/bid/67601","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"IBM Java SDK CVE-2014-0878 Security Bypass Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"http://www-01.ibm.com/support/docview.wss?uid=swg21686717","name":"http://www-01.ibm.com/support/docview.wss?uid=swg21686717","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"IBM Security Bulletin: Rational Insight - IBM SDK, Java Technology Edition Quarterly CPU - April 2014 (CVE-2014-0460, CVE-2014-0878) - United States","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/61264","name":"http://secunia.com/advisories/61264","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"About Secunia Research | Flexera","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.ibm.com/support/docview.wss?uid=swg21675588","name":"http://www.ibm.com/support/docview.wss?uid=swg21675588","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"IBM Security Bulletin: Multiple vulnerabilities in current IBM SDK for Java - April 2014 CPU update for Lotus Quickr 8.5 for WebSphere Portal - United States","mime":"text/html","httpstatus":"404","archivestatus":"200"},{"url":"http://www.ibm.com/support/docview.wss?uid=swg21677387","name":"http://www.ibm.com/support/docview.wss?uid=swg21677387","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Security Bulletin: Security vulnerabilities in IBM SDK, Java™ Technology Edition (CVE-2014-0878, CVE-2014-0460, CVE-2014-0453, CVE-2014-2420) affect SmartCloud Provisioning","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/59023","name":"http://secunia.com/advisories/59023","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Security Advisory SA59023 - IBM Multiple Products Java Two Vulnerabilities - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.ibm.com/support/docview.wss?uid=swg21675343","name":"http://www.ibm.com/support/docview.wss?uid=swg21675343","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"IBM Security Bulletin: Multiple vulnerabilities in IBM Multi-Enterprise Integration Gateway (CVE-2014-0460, CVE-2014-0878, CVE-2014-0453) - United States","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www-01.ibm.com/support/docview.wss?uid=swg21683484","name":"http://www-01.ibm.com/support/docview.wss?uid=swg21683484","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"IBM notice: The page you requested cannot be displayed","mime":"text/html","httpstatus":"404","archivestatus":"410"},{"url":"http://www-01.ibm.com/support/docview.wss?uid=swg21674539","name":"http://www-01.ibm.com/support/docview.wss?uid=swg21674539","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"IBM Security Bulletin: IBM Operational Decision Manager, WebSphere ILOG JRules and WebSphere Business Events: Multiple security vulnerabilities in IBM JRE - United States","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www-01.ibm.com/support/docview.wss?uid=swg21676703","name":"http://www-01.ibm.com/support/docview.wss?uid=swg21676703","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"IBM Security Bulletin: Two java security vulnerabilities in IBM Security Access Manager for Mobile and IBM Security Access Manager for Web (CVE-2014-0878, CVE-2014-0453) - United States","mime":"text/html","httpstatus":"404","archivestatus":"200"},{"url":"http://www-01.ibm.com/support/docview.wss?uid=swg21676746","name":"http://www-01.ibm.com/support/docview.wss?uid=swg21676746","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"IBM Security Bulletin: IBM Lotus Expeditor fixes for multiple vulnerabilities in IBM JRE - United States","mime":"text/html","httpstatus":"404","archivestatus":"200"},{"url":"http://secunia.com/advisories/59058","name":"http://secunia.com/advisories/59058","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Security Advisory SA59058 - IBM Lotus Expeditor Multiple Java Vulnerabilities - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www-01.ibm.com/support/docview.wss?uid=swg21676672","name":"http://www-01.ibm.com/support/docview.wss?uid=swg21676672","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Security Bulletin: Multiple vulnerabilities in the IBM SDK Java Technology Edition component of IBM MessageSight 1.0-1.1 (CVE-2014-0878, CVE-2014-0460 & CVE-2014-0453)","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www-01.ibm.com/support/docview.wss?uid=swg21679610","name":"http://www-01.ibm.com/support/docview.wss?uid=swg21679610","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Security Bulletin: Multiple security vulnerabilities exist in the IBM SDK, Java Technology Edition provided with WebSphere eXtreme Scale","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/59022","name":"http://secunia.com/advisories/59022","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Security Advisory SA59022 - IBM API Management Java Two Vulnerabilities - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www-01.ibm.com/support/docview.wss?uid=swg21672043","name":"http://www-01.ibm.com/support/docview.wss?uid=swg21672043","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"IBM Security Bulletin: Multiple vulnerabilities in current releases of the IBM® SDK, Java™ Technology Edition - United States","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www-01.ibm.com/support/docview.wss?uid=swg21681256","name":"http://www-01.ibm.com/support/docview.wss?uid=swg21681256","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"IBM Security Bulletin: Multiple security vulnerabilities in IBM SDK, Java™ Technology Edition affect IBM SmartCloud Provisioning (CVE-2014-0878, CVE-2014-0460, CVE-2014-0453). - United States","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www-01.ibm.com/support/docview.wss?uid=swg21679713","name":"http://www-01.ibm.com/support/docview.wss?uid=swg21679713","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"IBM SmartCloud Provisioning 2.1 Fix Pack 5 (SCP - 2.1.0.5) - United States","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www-01.ibm.com/support/docview.wss?uid=swg21673836","name":"http://www-01.ibm.com/support/docview.wss?uid=swg21673836","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"IBM Security Bulletin: Multiple vulnerabilities in IBM API Management - United States","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www-01.ibm.com/support/docview.wss?uid=swg21689593","name":"http://www-01.ibm.com/support/docview.wss?uid=swg21689593","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"IBM Security Bulletin: AppScan Standard can be affected by vulnerability in the current IBM SDK for Java (CVE-2014-0878, CVE-2014-4244, CVE-2014-4263) - United States","mime":"text/html","httpstatus":"404","archivestatus":"200"},{"url":"http://www-01.ibm.com/support/docview.wss?uid=swg21680750","name":"http://www-01.ibm.com/support/docview.wss?uid=swg21680750","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Security Bulletin: Multiple security vulnerabilities exist in the IBM SDK, Java Technology Edition provided with WebSphere DataPower XC10 Appliance","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/91084","name":"https://exchange.xforce.ibmcloud.com/vulnerabilities/91084","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"IBM X-Force Exchange","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2014-0878","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2014-0878","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"5.0.0.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"5.0.11.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"5.0.11.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"5.0.11.2","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"5.0.12.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"5.0.12.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"5.0.12.2","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"5.0.12.3","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"5.0.12.4","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"5.0.12.5","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"5.0.13.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"5.0.14.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"5.0.15.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"5.0.16.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"5.0.16.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"5.0.16.2","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"5.0.16.3","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"5.0.16.4","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"5.0.16.5","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"6.0.0.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"6.0.1.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"6.0.10.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"6.0.10.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"6.0.11.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"6.0.12.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"6.0.13.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"6.0.13.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"6.0.13.2","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"6.0.14.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"6.0.15.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"6.0.15.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"6.0.2.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"6.0.3.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"6.0.4.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"6.0.5.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"6.0.6.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"6.0.7.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"6.0.8.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"6.0.8.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"6.0.9.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"6.0.9.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"6.0.9.2","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"7.0.0.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"7.0.1.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"7.0.2.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"7.0.3.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"7.0.4.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"7.0.4.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"7.0.4.2","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"7.0.5.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"7.0.6.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"7.0.6.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2014","cve_id":"878","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ibm","cpe5":"java_sdk","cpe6":"7.1.0.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"technology","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-06T09:27:20.270Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"59022","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/59022"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://www-01.ibm.com/support/docview.wss?uid=swg21680750"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://www-01.ibm.com/support/docview.wss?uid=swg21679610"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://www-01.ibm.com/support/docview.wss?uid=swg21676672"},{"name":"59058","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/59058"},{"name":"61264","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/61264"},{"name":"ibm-java-cve20140878-weak-sec(91084)","tags":["vdb-entry","x_refsource_XF","x_transferred"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/91084"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://www-01.ibm.com/support/docview.wss?uid=swg21689593"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://www-01.ibm.com/support/docview.wss?uid=swg21681256"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://www-01.ibm.com/support/docview.wss?uid=swg21674539"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://www-01.ibm.com/support/docview.wss?uid=swg21686717"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://www-01.ibm.com/support/docview.wss?uid=swg21683484"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://www-01.ibm.com/support/docview.wss?uid=swg21673836"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://www.ibm.com/support/docview.wss?uid=swg21677387"},{"name":"59023","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/59023"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://www-01.ibm.com/support/docview.wss?uid=swg21676746"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://www-01.ibm.com/support/docview.wss?uid=swg21672043"},{"name":"67601","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/67601"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://www-01.ibm.com/support/docview.wss?uid=swg21679713"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://www.ibm.com/support/docview.wss?uid=swg21675343"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://www-01.ibm.com/support/docview.wss?uid=swg21676703"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://www.ibm.com/support/docview.wss?uid=swg21675588"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2014-05-05T00:00:00.000Z","descriptions":[{"lang":"en","value":"The IBMSecureRandom component in the IBMJCE and IBMSecureRandom cryptographic providers in IBM SDK Java Technology Edition 5.0 before Service Refresh 16 FP6, 6 before Service Refresh 16, 6.0.1 before Service Refresh 8, 7 before Service Refresh 7, and 7R1 before Service Refresh 1 makes it easier for context-dependent attackers to defeat cryptographic protection mechanisms by predicting the random number generator's output."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2017-08-28T12:57:01.000Z","orgId":"9a959283-ebb5-44b6-b705-dcc2bbced522","shortName":"ibm"},"references":[{"name":"59022","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/59022"},{"tags":["x_refsource_CONFIRM"],"url":"http://www-01.ibm.com/support/docview.wss?uid=swg21680750"},{"tags":["x_refsource_CONFIRM"],"url":"http://www-01.ibm.com/support/docview.wss?uid=swg21679610"},{"tags":["x_refsource_CONFIRM"],"url":"http://www-01.ibm.com/support/docview.wss?uid=swg21676672"},{"name":"59058","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/59058"},{"name":"61264","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/61264"},{"name":"ibm-java-cve20140878-weak-sec(91084)","tags":["vdb-entry","x_refsource_XF"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/91084"},{"tags":["x_refsource_CONFIRM"],"url":"http://www-01.ibm.com/support/docview.wss?uid=swg21689593"},{"tags":["x_refsource_CONFIRM"],"url":"http://www-01.ibm.com/support/docview.wss?uid=swg21681256"},{"tags":["x_refsource_CONFIRM"],"url":"http://www-01.ibm.com/support/docview.wss?uid=swg21674539"},{"tags":["x_refsource_CONFIRM"],"url":"http://www-01.ibm.com/support/docview.wss?uid=swg21686717"},{"tags":["x_refsource_CONFIRM"],"url":"http://www-01.ibm.com/support/docview.wss?uid=swg21683484"},{"tags":["x_refsource_CONFIRM"],"url":"http://www-01.ibm.com/support/docview.wss?uid=swg21673836"},{"tags":["x_refsource_CONFIRM"],"url":"http://www.ibm.com/support/docview.wss?uid=swg21677387"},{"name":"59023","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/59023"},{"tags":["x_refsource_CONFIRM"],"url":"http://www-01.ibm.com/support/docview.wss?uid=swg21676746"},{"tags":["x_refsource_CONFIRM"],"url":"http://www-01.ibm.com/support/docview.wss?uid=swg21672043"},{"name":"67601","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/67601"},{"tags":["x_refsource_CONFIRM"],"url":"http://www-01.ibm.com/support/docview.wss?uid=swg21679713"},{"tags":["x_refsource_CONFIRM"],"url":"http://www.ibm.com/support/docview.wss?uid=swg21675343"},{"tags":["x_refsource_CONFIRM"],"url":"http://www-01.ibm.com/support/docview.wss?uid=swg21676703"},{"tags":["x_refsource_CONFIRM"],"url":"http://www.ibm.com/support/docview.wss?uid=swg21675588"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"psirt@us.ibm.com","ID":"CVE-2014-0878","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"The IBMSecureRandom component in the IBMJCE and IBMSecureRandom cryptographic providers in IBM SDK Java Technology Edition 5.0 before Service Refresh 16 FP6, 6 before Service Refresh 16, 6.0.1 before Service Refresh 8, 7 before Service Refresh 7, and 7R1 before Service Refresh 1 makes it easier for context-dependent attackers to defeat cryptographic protection mechanisms by predicting the random number generator's output."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"59022","refsource":"SECUNIA","url":"http://secunia.com/advisories/59022"},{"name":"http://www-01.ibm.com/support/docview.wss?uid=swg21680750","refsource":"CONFIRM","url":"http://www-01.ibm.com/support/docview.wss?uid=swg21680750"},{"name":"http://www-01.ibm.com/support/docview.wss?uid=swg21679610","refsource":"CONFIRM","url":"http://www-01.ibm.com/support/docview.wss?uid=swg21679610"},{"name":"http://www-01.ibm.com/support/docview.wss?uid=swg21676672","refsource":"CONFIRM","url":"http://www-01.ibm.com/support/docview.wss?uid=swg21676672"},{"name":"59058","refsource":"SECUNIA","url":"http://secunia.com/advisories/59058"},{"name":"61264","refsource":"SECUNIA","url":"http://secunia.com/advisories/61264"},{"name":"ibm-java-cve20140878-weak-sec(91084)","refsource":"XF","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/91084"},{"name":"http://www-01.ibm.com/support/docview.wss?uid=swg21689593","refsource":"CONFIRM","url":"http://www-01.ibm.com/support/docview.wss?uid=swg21689593"},{"name":"http://www-01.ibm.com/support/docview.wss?uid=swg21681256","refsource":"CONFIRM","url":"http://www-01.ibm.com/support/docview.wss?uid=swg21681256"},{"name":"http://www-01.ibm.com/support/docview.wss?uid=swg21674539","refsource":"CONFIRM","url":"http://www-01.ibm.com/support/docview.wss?uid=swg21674539"},{"name":"http://www-01.ibm.com/support/docview.wss?uid=swg21686717","refsource":"CONFIRM","url":"http://www-01.ibm.com/support/docview.wss?uid=swg21686717"},{"name":"http://www-01.ibm.com/support/docview.wss?uid=swg21683484","refsource":"CONFIRM","url":"http://www-01.ibm.com/support/docview.wss?uid=swg21683484"},{"name":"http://www-01.ibm.com/support/docview.wss?uid=swg21673836","refsource":"CONFIRM","url":"http://www-01.ibm.com/support/docview.wss?uid=swg21673836"},{"name":"http://www.ibm.com/support/docview.wss?uid=swg21677387","refsource":"CONFIRM","url":"http://www.ibm.com/support/docview.wss?uid=swg21677387"},{"name":"59023","refsource":"SECUNIA","url":"http://secunia.com/advisories/59023"},{"name":"http://www-01.ibm.com/support/docview.wss?uid=swg21676746","refsource":"CONFIRM","url":"http://www-01.ibm.com/support/docview.wss?uid=swg21676746"},{"name":"http://www-01.ibm.com/support/docview.wss?uid=swg21672043","refsource":"CONFIRM","url":"http://www-01.ibm.com/support/docview.wss?uid=swg21672043"},{"name":"67601","refsource":"BID","url":"http://www.securityfocus.com/bid/67601"},{"name":"http://www-01.ibm.com/support/docview.wss?uid=swg21679713","refsource":"CONFIRM","url":"http://www-01.ibm.com/support/docview.wss?uid=swg21679713"},{"name":"http://www.ibm.com/support/docview.wss?uid=swg21675343","refsource":"CONFIRM","url":"http://www.ibm.com/support/docview.wss?uid=swg21675343"},{"name":"http://www-01.ibm.com/support/docview.wss?uid=swg21676703","refsource":"CONFIRM","url":"http://www-01.ibm.com/support/docview.wss?uid=swg21676703"},{"name":"http://www.ibm.com/support/docview.wss?uid=swg21675588","refsource":"CONFIRM","url":"http://www.ibm.com/support/docview.wss?uid=swg21675588"}]}}}},"cveMetadata":{"assignerOrgId":"9a959283-ebb5-44b6-b705-dcc2bbced522","assignerShortName":"ibm","cveId":"CVE-2014-0878","datePublished":"2014-05-26T19:00:00.000Z","dateReserved":"2014-01-06T00:00:00.000Z","dateUpdated":"2024-08-06T09:27:20.270Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2014-05-26 19:55:04","lastModifiedDate":"2026-05-06 22:30:45","problem_types":["CWE-310","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:P/I:P/A:N","baseScore":5.8,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":8.6,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:6.0.0.0:*:*:*:technology:*:*:*","matchCriteriaId":"7F64AE3A-3A3F-4F54-AEDD-0425A3F459D4"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:6.0.1.0:*:*:*:technology:*:*:*","matchCriteriaId":"A91376D6-0271-447B-83C6-C1CF94059718"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:6.0.2.0:*:*:*:technology:*:*:*","matchCriteriaId":"E8DB8CF1-DFC6-4532-BCF0-86AE616AE145"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:6.0.3.0:*:*:*:technology:*:*:*","matchCriteriaId":"68BA60FA-89F1-4CE7-8685-95C3E2FCFFC6"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:6.0.4.0:*:*:*:technology:*:*:*","matchCriteriaId":"F3A2FA81-5236-4D4F-A189-B7CCD3C1A89B"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:6.0.5.0:*:*:*:technology:*:*:*","matchCriteriaId":"4CAB76E6-07A6-42B5-9D4D-5E5BA4B39384"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:6.0.6.0:*:*:*:technology:*:*:*","matchCriteriaId":"F7E16292-F6AC-4DA9-BEEC-9CF6D4C8D8F1"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:6.0.7.0:*:*:*:technology:*:*:*","matchCriteriaId":"84A9D30E-ADDF-43E3-BFC2-FB6F0704B359"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:6.0.8.0:*:*:*:technology:*:*:*","matchCriteriaId":"EC06A0C3-1627-443B-98E3-5B40A1424E33"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:6.0.8.1:*:*:*:technology:*:*:*","matchCriteriaId":"91C9ECDE-E94D-43A7-8FF4-ADDADCF88ABF"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:6.0.9.0:*:*:*:technology:*:*:*","matchCriteriaId":"A3B11DD7-B251-4E8F-88A5-8EF3E49455B5"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:6.0.9.1:*:*:*:technology:*:*:*","matchCriteriaId":"52DEB343-EA20-4745-950C-E19AD553A519"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:6.0.9.2:*:*:*:technology:*:*:*","matchCriteriaId":"B2A56764-8CF1-4098-AFCB-9A3E79A37298"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:6.0.10.0:*:*:*:technology:*:*:*","matchCriteriaId":"F6C0E04C-BB7C-4D30-944F-AC3A32C9A870"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:6.0.10.1:*:*:*:technology:*:*:*","matchCriteriaId":"EF7BD7D8-C909-48EE-8654-9A118184C0FE"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:6.0.11.0:*:*:*:technology:*:*:*","matchCriteriaId":"68CB5F58-8526-4814-AAA2-85DB5508450C"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:6.0.12.0:*:*:*:technology:*:*:*","matchCriteriaId":"CBD2DCC3-972E-45F5-8F06-B7EE48BF417B"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:6.0.13.0:*:*:*:technology:*:*:*","matchCriteriaId":"3BB7005A-1C29-4A72-8559-F184738C66F4"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:6.0.13.1:*:*:*:technology:*:*:*","matchCriteriaId":"1B3E82B3-244F-4681-A0B0-A55201BD89BD"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:6.0.13.2:*:*:*:technology:*:*:*","matchCriteriaId":"74A57DD9-B74A-4865-B321-00CB2FF2EDFF"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:6.0.14.0:*:*:*:technology:*:*:*","matchCriteriaId":"0707BA71-C076-4C77-A6A7-5FA66BA14D32"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:6.0.15.0:*:*:*:technology:*:*:*","matchCriteriaId":"3B123DE5-0F8F-4C23-8B0D-123C257070A7"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:6.0.15.1:*:*:*:technology:*:*:*","matchCriteriaId":"D615B5B1-9E33-4795-AE3D-579309DBF915"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:5.0.0.0:*:*:*:technology:*:*:*","matchCriteriaId":"55B1372B-A99E-4F5F-85FB-7F7CB712A26D"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:5.0.11.0:*:*:*:technology:*:*:*","matchCriteriaId":"07DDF4C0-09A9-4CAB-88B3-0CEA3E377D0D"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:5.0.11.1:*:*:*:technology:*:*:*","matchCriteriaId":"FD77E636-7664-4EA7-AB69-BA77FC6BFC64"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:5.0.11.2:*:*:*:technology:*:*:*","matchCriteriaId":"3E950BC9-28B4-4078-8FED-4766E6D17C96"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:5.0.12.0:*:*:*:technology:*:*:*","matchCriteriaId":"45DA039D-D1A3-4FFA-9F37-52233FC8B8D3"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:5.0.12.1:*:*:*:technology:*:*:*","matchCriteriaId":"1538B3DC-D8A0-41BC-90BE-2DDC7E8A56B3"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:5.0.12.2:*:*:*:technology:*:*:*","matchCriteriaId":"86D14ED2-BB93-4445-94BF-89E42AA4D0C3"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:5.0.12.3:*:*:*:technology:*:*:*","matchCriteriaId":"3C154101-DF9A-47F8-813A-97FB4FD161FB"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:5.0.12.4:*:*:*:technology:*:*:*","matchCriteriaId":"DF029E26-0FBD-40EB-AF68-F48C3FE31B03"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:5.0.12.5:*:*:*:technology:*:*:*","matchCriteriaId":"93652A4D-C73D-43AA-ADC9-00E3FA2DA5AA"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:5.0.13.0:*:*:*:technology:*:*:*","matchCriteriaId":"40B5060F-5DED-49EF-913C-4C97737B8A20"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:5.0.14.0:*:*:*:technology:*:*:*","matchCriteriaId":"99886E38-7DD1-4954-824D-C3B2B56557C0"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:5.0.15.0:*:*:*:technology:*:*:*","matchCriteriaId":"EBB58E8A-9FB4-4C26-A85A-5BC914EF7215"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:5.0.16.0:*:*:*:technology:*:*:*","matchCriteriaId":"432A7930-462E-42C2-9E13-174374630C09"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:5.0.16.1:*:*:*:technology:*:*:*","matchCriteriaId":"29827AD1-8C9C-4736-A931-79749A5DD25A"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:5.0.16.2:*:*:*:technology:*:*:*","matchCriteriaId":"010E25AA-20D4-4593-A6AD-25094D53F74B"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:5.0.16.3:*:*:*:technology:*:*:*","matchCriteriaId":"E8DF754E-E5A3-480F-9725-F8478A71D1C4"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:5.0.16.4:*:*:*:technology:*:*:*","matchCriteriaId":"D131E102-169F-42DA-AEFB-9650AF85A797"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:5.0.16.5:*:*:*:technology:*:*:*","matchCriteriaId":"5F4CAE85-C253-4F95-81AE-A02BE48DCAA4"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:7.0.0.0:*:*:*:technology:*:*:*","matchCriteriaId":"769131D3-A1FD-4404-9467-90D0F81F03D2"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:7.0.1.0:*:*:*:technology:*:*:*","matchCriteriaId":"AF8499A1-DCD7-49DF-BB75-92CD80167994"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:7.0.2.0:*:*:*:technology:*:*:*","matchCriteriaId":"2E6EEC1B-EB35-46AE-B6DD-1239037C008F"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:7.0.3.0:*:*:*:technology:*:*:*","matchCriteriaId":"29F18878-B335-4AE6-A28F-3DC47E101BCB"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:7.0.4.0:*:*:*:technology:*:*:*","matchCriteriaId":"96899A64-B537-4E41-BD83-1C4B0B06E58C"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:7.0.4.1:*:*:*:technology:*:*:*","matchCriteriaId":"AD53244F-CF3A-4470-9A6D-A9F6AACC4363"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:7.0.4.2:*:*:*:technology:*:*:*","matchCriteriaId":"E468E9EA-4742-41CC-855C-5DF868A06E23"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:7.0.5.0:*:*:*:technology:*:*:*","matchCriteriaId":"7DA12A25-D63C-4CBB-96F0-23E0A704E0B9"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:7.0.6.0:*:*:*:technology:*:*:*","matchCriteriaId":"C1ABEDB5-3068-448B-97CF-6532FE8DFDFA"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:7.0.6.1:*:*:*:technology:*:*:*","matchCriteriaId":"8E57A38C-BD43-4FD4-B5D8-E6069D5F1A24"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:java_sdk:7.1.0.0:*:*:*:technology:*:*:*","matchCriteriaId":"52300B0C-9B55-47DD-8240-099845A8A402"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2014","CveId":"878","Ordinal":"1","Title":"CVE-2014-0878","CVE":"CVE-2014-0878","Year":"2014"},"notes":[{"CveYear":"2014","CveId":"878","Ordinal":"1","NoteData":"The IBMSecureRandom component in the IBMJCE and IBMSecureRandom cryptographic providers in IBM SDK Java Technology Edition 5.0 before Service Refresh 16 FP6, 6 before Service Refresh 16, 6.0.1 before Service Refresh 8, 7 before Service Refresh 7, and 7R1 before Service Refresh 1 makes it easier for context-dependent attackers to defeat cryptographic protection mechanisms by predicting the random number generator's output.","Type":"Description","Title":"CVE-2014-0878"},{"CveYear":"2014","CveId":"878","Ordinal":"2","NoteData":"2014-05-26","Type":"Other","Title":"Published"},{"CveYear":"2014","CveId":"878","Ordinal":"3","NoteData":"2017-08-28","Type":"Other","Title":"Modified"}]}}}