CVE-2015-0491: Critical severity oracle java se 7 vulnerability
Oracle Java SE 5.0u85, 6u95, 7u79 and 8u45 fixes an unspecified vulnerability in the 2D component (CVE-2015-0491). Upstream has CVSSv2 scored this issue as: 10.0/AV:N/AC:L/Au:N/C:C/I:C/A:C
External Reference:
http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html#AppendixJAVA
Other sources
Unspecified vulnerability in Oracle Java SE 5.0u81, 6u91, 7u76, and 8u40, and Java FX 2.2.76, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D, a different vulnerability than CVE-2015-0459.
— MITRE
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-0491?
CVE-2015-0491 has been assigned a CVSSv2 score of 10.0, indicating a critical severity level.
How do I fix CVE-2015-0491?
To fix CVE-2015-0491, update to the latest version of Oracle Java SE provided by Oracle that addresses the vulnerability.
What versions are affected by CVE-2015-0491?
CVE-2015-0491 affects Oracle Java SE versions 5.0u85, 6u95, 7u79, and 8u45.
What components are involved in CVE-2015-0491?
CVE-2015-0491 involves an unspecified vulnerability in the 2D component of Oracle Java.
Is there a workaround for CVE-2015-0491?
There is no official workaround for CVE-2015-0491; updating to a secure version is recommended.