First published: Thu Jul 16 2015(Updated: )
Unspecified vulnerability in Oracle Java SE 7u80 and 8u45 allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Install.
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle JDK 6 | =1.7.0-update80 | |
Oracle JDK 6 | =1.8.0-update45 | |
Oracle Java Runtime Environment (JRE) | =1.7.0-update_80 | |
Oracle Java Runtime Environment (JRE) | =1.8.0-update_45 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-2597 has not been assigned a specific CVSS score, but it is categorized as a vulnerability affecting confidentiality, integrity, and availability.
To remediate CVE-2015-2597, users should upgrade to the latest versions of Oracle Java SE 7 and 8 that are not affected by this vulnerability.
CVE-2015-2597 affects local users of Oracle Java SE versions 1.7.0-update80 and 1.8.0-update45.
CVE-2015-2597 may allow local users to manipulate the installation process, potentially compromising system security.
There are no specific workarounds for CVE-2015-2597, and the best course of action is to apply available updates.