CVE-2014-6504: Medium severity oracle java se 7 vulnerability
Published Oct 15, 2014
·Updated
Unspecified vulnerability in Oracle Java SE 5.0u71, 6u81, and 7u67, and Java SE Embedded 7u60, allows remote attackers to affect confidentiality via unknown vectors related to Hotspot.
Affected Software
7 affected components
Oracle JDK=1.5.0-update_71
Oracle JDK=1.6.0-update81
Oracle JDK=1.7.0-update60
ORACLE JRE=1.5.0-update_71
ORACLE JRE=1.6.0-update_81
ORACLE JRE=1.7.0-update_67
ORACLE JRE=1.7.0-update60
Remediation
Event History
Oct 15, 2014
CVE Published
via MITRE·10:03 PM
Data Sourced
via MITRE·10:03 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2014-6504?
CVE-2014-6504 has been classified as a moderate severity vulnerability.
2
How do I fix CVE-2014-6504?
To fix CVE-2014-6504, update your Oracle Java SE to a more recent version that is not affected.
3
What software is affected by CVE-2014-6504?
CVE-2014-6504 affects Oracle Java SE 5.0u71, 6u81, and 7u67, as well as Java SE Embedded 7u60.
4
What type of vulnerability is CVE-2014-6504?
CVE-2014-6504 is an unspecified vulnerability that affects confidentiality.
5
Can I still use Oracle Java SE versions affected by CVE-2014-6504?
It is not recommended to use affected Oracle Java SE versions due to the potential security risks.