CVE-2014-4268: Medium severity Oracle JDK vulnerability
Published Jul 17, 2014
·Updated
Unspecified vulnerability in Oracle Java SE 5.0u65, 6u75, 7u60, and 8u5 allows remote attackers to affect confidentiality via unknown vectors related to Swing.
Affected Software
8 affected components
Oracle JDK=1.5.0-update65
Oracle JDK=1.6.0-update75
Oracle JDK=1.7.0-update60
Oracle JDK=1.8.0-update5
ORACLE JRE=1.5.0-update65
ORACLE JRE=1.6.0-update75
ORACLE JRE=1.7.0-update60
ORACLE JRE=1.8.0-update5
Event History
Jul 17, 2014
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2014-4268?
CVE-2014-4268 is considered a moderate severity vulnerability that affects the confidentiality of Oracle Java SE.
2
How do I fix CVE-2014-4268?
To fix CVE-2014-4268, you should update Oracle Java SE to the latest version available that addresses this vulnerability.
3
Which versions of Oracle Java are affected by CVE-2014-4268?
CVE-2014-4268 affects Oracle Java SE versions 5.0u65, 6u75, 7u60, and 8u5.
4
Can CVE-2014-4268 be exploited remotely?
Yes, CVE-2014-4268 allows remote attackers to potentially exploit the vulnerability through unknown vectors.
5
What components of Oracle Java are involved in CVE-2014-4268?
CVE-2014-4268 is related to weaknesses in the Swing component of Oracle Java.