CVE-2014-2405: Critical severity Oracle OpenJDK vulnerability
Published May 14, 2014
·Updated
Unspecified vulnerability in OpenJDK 6 before 6b31 on Debian GNU/Linux and Ubuntu 12.04 LTS and 10.04 LTS has unknown impact and attack vectors, a different vulnerability than CVE-2014-0462.
Affected Software
8 affected components
Oracle OpenJDK=1.6.0
Canonical Ubuntu Linux=10.04
Canonical Ubuntu Linux=12.04
Debian Debian Linux
All of the following
Oracle OpenJDK=1.6.0
Any of the following
Canonical Ubuntu Linux=10.04
Canonical Ubuntu Linux=12.04
Debian Debian Linux
Event History
May 14, 2014
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·12:55 AM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2014-2405?
The severity of CVE-2014-2405 is currently unknown due to unspecified impacts and attack vectors.
2
How do I fix CVE-2014-2405?
Fixing CVE-2014-2405 may involve updating OpenJDK to the latest version that addresses this vulnerability.
3
Which platforms are affected by CVE-2014-2405?
CVE-2014-2405 affects OpenJDK 6 before 6b31 on Debian GNU/Linux and Ubuntu 12.04 LTS and 10.04 LTS.
4
What versions of OpenJDK are vulnerable to CVE-2014-2405?
OpenJDK 6.0 before version 6b31 is vulnerable to CVE-2014-2405.
5
Is there a known exploit for CVE-2014-2405?
As of now, there is no public information regarding known exploits for CVE-2014-2405.