First published: Wed Oct 15 2014(Updated: )
Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20; Java SE Embedded 7u60; and Jrockit R27.8.3 and R28.3.3 allows remote attackers to affect confidentiality via vectors related to JAXP.
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
BEA JRockit | =r27.8.3 | |
BEA JRockit | =r28.3.3 | |
Oracle JDK 6 | =1.6.0-update81 | |
Oracle JDK 6 | =1.7.0-update60 | |
Oracle Java Runtime Environment (JRE) | =1.6.0-update_81 | |
Oracle Java Runtime Environment (JRE) | =1.7.0-update_67 | |
Oracle Java Runtime Environment (JRE) | =1.7.0-update60 | |
Oracle Java Runtime Environment (JRE) | =1.8.0-update_20 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-6517 is classified as a moderate severity vulnerability.
To remediate CVE-2014-6517, upgrade to the latest version of Oracle Java SE or apply relevant patches as specified by Oracle.
CVE-2014-6517 affects Oracle Java SE 6u81, 7u67, 8u20, and specific JRockit versions.
CVE-2014-6517 allows remote attackers to potentially compromise confidentiality by exploiting vulnerabilities related to JAXP.
Yes, CVE-2014-6517 also affects Java SE Embedded version 7u60.