CVE-2015-0412: High severity ubuntu vulnerability
Published Jan 21, 2015
·Updated
Unspecified vulnerability in Oracle Java SE 6u85, 7u72, and 8u25 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to JAX-WS.
Affected Software
18 affected components
Canonical Ubuntu Linux=10.04
Canonical Ubuntu Linux=12.04
Canonical Ubuntu Linux=14.04
Canonical Ubuntu Linux=14.10
Debian Debian Linux=7.0
Debian Debian Linux=8.0
Novell Suse Linux Enterprise Desktop=11.0-sp3
Novell Suse Linux Enterprise Server=12.0
openSUSE openSUSE=13.2
redhat Enterprise Linux=5.0
redhat Enterprise Linux=6.0
redhat Enterprise Linux=7.0
Oracle JDK=1.6.0-update85
Oracle JDK=1.7.0-update72
Oracle JDK=1.8.0-update25
Oracle JRE=1.6.0-update85
Oracle JRE=1.7.0-update72
Oracle JRE=1.8.0-update25
Remediation
Event History
Jan 21, 2015
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-0412?
CVE-2015-0412 is classified as a high severity vulnerability that may affect confidentiality, integrity, and availability.
2
How do I fix CVE-2015-0412?
To fix CVE-2015-0412, you should update to the latest version of Oracle Java SE that addresses this vulnerability.
3
What software is affected by CVE-2015-0412?
CVE-2015-0412 impacts several versions of Oracle Java SE including 6u85, 7u72, and 8u25, as well as multiple Linux distributions.
4
Can CVE-2015-0412 be exploited remotely?
Yes, remote attackers can exploit CVE-2015-0412 to gain unauthorized access and potentially affect systems.
5
Is there a patch available for CVE-2015-0412?
Yes, Oracle released a patch as part of its regular updates to address CVE-2015-0412.