CVE-2014-6506: Medium severity oracle java se 7 vulnerability
Published Oct 15, 2014
·Updated
Unspecified vulnerability in Oracle Java SE 5.0u71, 6u81, 7u67, and 8u20, and Java SE Embedded 7u60, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries.
Affected Software
8 affected components
Oracle JDK=1.5.0-update_71
Oracle JDK=1.6.0-update81
Oracle JDK=1.7.0-update60
ORACLE JRE=1.5.0-update_71
ORACLE JRE=1.6.0-update_81
ORACLE JRE=1.7.0-update_67
ORACLE JRE=1.7.0-update60
ORACLE JRE=1.8.0-update_20
Remediation
Event History
Oct 15, 2014
CVE Published
via MITRE·10:03 PM
Data Sourced
via MITRE·10:03 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2014-6506?
CVE-2014-6506 has a moderate severity level affecting confidentiality, integrity, and availability.
2
How do I fix CVE-2014-6506?
To fix CVE-2014-6506, update your Oracle Java SE to a patched version that addresses this vulnerability.
3
Which versions are affected by CVE-2014-6506?
CVE-2014-6506 affects Oracle Java SE 5.0u71, 6u81, 7u67, 8u20, and Java SE Embedded 7u60.
4
Who is impacted by CVE-2014-6506?
Remote attackers can exploit CVE-2014-6506 to impact users running the affected versions of Oracle Java.
5
Is there a workaround for CVE-2014-6506?
There is no official workaround for CVE-2014-6506, so updating to a secure version is recommended.