First published: Tue Apr 14 2015(Updated: )
Oracle Java SE 5.0u85, 6u95, 7u79 and 8u45 fixes an unspecified vulnerability in the 2D component (<a href="https://access.redhat.com/security/cve/CVE-2015-0491">CVE-2015-0491</a>). Upstream has CVSSv2 scored this issue as: 10.0/AV:N/AC:L/Au:N/C:C/I:C/A:C External Reference: <a href="http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html#AppendixJAVA">http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html#AppendixJAVA</a>
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle JDK 6 | =1.5.0-update8 | |
Oracle JDK 6 | =1.6.0-update91 | |
Oracle JDK 6 | =1.7.0-update76 | |
Oracle JDK 6 | =1.8.0-update40 | |
Oracle Java Runtime Environment (JRE) | =1.5.0-update81 | |
Oracle Java Runtime Environment (JRE) | =1.6.0-update91 | |
Oracle Java Runtime Environment (JRE) | =1.7.0-update76 | |
Oracle Java Runtime Environment (JRE) | =1.8.0-update40 | |
Oracle JavaFX | =2.2.76 | |
SUSE Linux Enterprise Desktop | =11.0-sp3 | |
openSUSE | =13.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-0491 has been assigned a CVSSv2 score of 10.0, indicating a critical severity level.
To fix CVE-2015-0491, update to the latest version of Oracle Java SE provided by Oracle that addresses the vulnerability.
CVE-2015-0491 affects Oracle Java SE versions 5.0u85, 6u95, 7u79, and 8u45.
CVE-2015-0491 involves an unspecified vulnerability in the 2D component of Oracle Java.
There is no official workaround for CVE-2015-0491; updating to a secure version is recommended.