First published: Wed Jul 15 2015(Updated: )
Oracle Java SE 7u85 fixes an unspecified vulnerability in the Hotspot component (<a href="https://access.redhat.com/security/cve/CVE-2015-2596">CVE-2015-2596</a>). Upstream has CVSSv2 scored this issue as: 4.3/AV:N/AC:M/Au:N/C:N/I:P/A:N External Reference: <a href="http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html#AppendixJAVA">http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html#AppendixJAVA</a>
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle JDK 6 | =1.7.0-update80 | |
Oracle Java Runtime Environment (JRE) | =1.7.0-update_80 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-2596 has a CVSSv2 score of 4.3, indicating a moderate severity level.
To fix CVE-2015-2596, update your Oracle JDK or JRE to version 1.7.0-update85 or later.
CVE-2015-2596 affects Oracle JDK version 1.7.0-update80 and Oracle JRE version 1.7.0-update80.
CVE-2015-2596 can be exploited remotely as it affects the Hotspot component of Java.
CVE-2015-2596 relates specifically to vulnerabilities in the Hotspot component of Oracle Java.