Oracle Java SE CVE-2015-0437 Remote Java SE Vulnerability
BID:72146
Info
Oracle Java SE CVE-2015-0437 Remote Java SE Vulnerability
| Bugtraq ID: | 72146 |
| Class: | Unknown |
| CVE: |
CVE-2015-0437 |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 20 2015 12:00AM |
| Updated: | Jul 05 2016 09:46PM |
| Credit: | Oracle |
| Vulnerable: |
Red Hat Enterprise Linux Workstation Optional 6 Red Hat Enterprise Linux Workstation 6 Red Hat Enterprise Linux Server Optional 6 Red Hat Enterprise Linux Server 6 Red Hat Enterprise Linux HPC Node Optional 6 Red Hat Enterprise Linux HPC Node 6 Red Hat Enterprise Linux Desktop Optional 6 Red Hat Enterprise Linux Desktop 6 Oracle Enterprise Linux 6.2 Oracle Enterprise Linux 6 IBM Tivoli Storage Productivity Center 4.2.1.185 IBM Tivoli Storage Productivity Center 4.2.1 IBM Rational Software Architect 7.5.5.2 IBM Rational Software Architect 7.5 IBM CICS Transaction Gateway 8.0 IBM CICS Transaction Gateway 7.2 Gentoo Linux CentOS CentOS 6 Avaya Proactive Contact 5.0 Avaya Meeting Exchange 6.0 Avaya Meeting Exchange 5.2 Avaya IQ 5 Avaya Communication Server 1000M Signaling Server 7.0 Avaya Communication Server 1000M 7.0 Avaya Communication Server 1000E Signaling Server 7.0 Avaya Communication Server 1000E 7.0 Avaya Aura System Manager 6.0 Avaya Aura Session Manager 6.0 Avaya Aura Presence Services 6.0 Avaya Aura Messaging 6.0 Avaya Aura Experience Portal 6.0 Avaya Aura Application Server 5300 SIP Core 2.0 |
| Not Vulnerable: | |
Discussion
Oracle Java SE CVE-2015-0437 Remote Java SE Vulnerability
Oracle Java SE is prone to a remote vulnerability in Java SE.
The vulnerability can be exploited over multiple protocols. This issue affects the 'Hotspot' sub-component.
This vulnerability affects the following supported versions:
Java SE 8u25
Oracle Java SE is prone to a remote vulnerability in Java SE.
The vulnerability can be exploited over multiple protocols. This issue affects the 'Hotspot' sub-component.
This vulnerability affects the following supported versions:
Java SE 8u25
Exploit / POC
Oracle Java SE CVE-2015-0437 Remote Java SE Vulnerability
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Oracle Java SE CVE-2015-0437 Remote Java SE Vulnerability
Solution:
Vendor updates are available. Please contact the vendor for more information.
Solution:
Vendor updates are available. Please contact the vendor for more information.
References
Oracle Java SE CVE-2015-0437 Remote Java SE Vulnerability
References:
References:
- Oracle Java Homepage (Oracle)
- ASA-2015-129 (Avaya)
- Multiple vulnerabilities, including Freak and Bar Mitzvah, in IBM Java SDK affec (IBM)
- Oracle Critical Patch Update Advisory - January 2015 Oracle Advisory (Oracle)
- Security Bulletin: CICS Transaction Gateway for Multiplatforms (IBM)
- Security Bulletin: Multiple vulnerabilities in IBM Java SDK affect Rational Soft (IBM)
- Security Bulletin: Multiple vulnerabilities in IBM Java SDK affect Tivoli Storag (IBM)