First published: Wed Oct 15 2014(Updated: )
Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20, when running on Firefox, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment.
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle JDK 6 | =1.6.0-update81 | |
Oracle JDK 6 | =1.8.0-update20 | |
Oracle Java Runtime Environment (JRE) | =1.6.0-update_81 | |
Oracle Java Runtime Environment (JRE) | =1.7.0-update_67 | |
Oracle Java Runtime Environment (JRE) | =1.8.0-update_20 | |
Mozilla Firefox |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-6492 is classified as a moderate severity vulnerability, affecting confidentiality, integrity, and availability.
To fix CVE-2014-6492, update Oracle Java SE to the latest version recommended by Oracle.
CVE-2014-6492 affects Oracle JDK versions 1.6.0-update81, 1.7.0-update67, and 1.8.0-update20, as well as the Oracle JRE versions corresponding to those updates.
Yes, CVE-2014-6492 allows remote attackers to exploit the vulnerability through unspecified vectors when running the affected Java versions on Firefox.
Yes, users of Mozilla Firefox running the vulnerable versions of Oracle Java may experience the impacts related to CVE-2014-6492.