First published: Tue Oct 20 2015(Updated: )
Oracle Java SE 7u91 and 8u65 fixes an unspecified vulnerability in the Deployment component (<a href="https://access.redhat.com/security/cve/CVE-2015-4810">CVE-2015-4810</a>). Upstream has CVSSv2 scored this issue as: 6.9/AV:L/AC:M/Au:N/C:C/I:C/A:C External Reference: <a href="http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html#AppendixJAVA">http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html#AppendixJAVA</a>
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/java | <1.7.0-oracle-1:1.7.0.91-1jpp.1.el5_11 | 1.7.0-oracle-1:1.7.0.91-1jpp.1.el5_11 |
redhat/java | <1.8.0-oracle-1:1.8.0.65-1jpp.3.el6_7 | 1.8.0-oracle-1:1.8.0.65-1jpp.3.el6_7 |
redhat/java | <1.7.0-oracle-1:1.7.0.91-1jpp.1.el6_7 | 1.7.0-oracle-1:1.7.0.91-1jpp.1.el6_7 |
redhat/java | <1.8.0-oracle-1:1.8.0.65-1jpp.3.el7_1 | 1.8.0-oracle-1:1.8.0.65-1jpp.3.el7_1 |
redhat/java | <1.7.0-oracle-1:1.7.0.91-1jpp.1.el7_1 | 1.7.0-oracle-1:1.7.0.91-1jpp.1.el7_1 |
redhat/java | <1.7.0-ibm-1:1.7.0.9.20-1jpp.1.el5 | 1.7.0-ibm-1:1.7.0.9.20-1jpp.1.el5 |
redhat/java | <1.7.1-ibm-1:1.7.1.3.20-1jpp.1.el6_7 | 1.7.1-ibm-1:1.7.1.3.20-1jpp.1.el6_7 |
redhat/java | <1.7.1-ibm-1:1.7.1.3.20-1jpp.1.el7 | 1.7.1-ibm-1:1.7.1.3.20-1jpp.1.el7 |
redhat/java | <1.8.0-ibm-1:1.8.0.2.0-1jpp.1.el7 | 1.8.0-ibm-1:1.8.0.2.0-1jpp.1.el7 |
redhat/java | <1.7.0-ibm-1:1.7.0.9.40-1jpp.1.el5 | 1.7.0-ibm-1:1.7.0.9.40-1jpp.1.el5 |
redhat/java | <1.7.1-ibm-1:1.7.1.3.40-1jpp.1.el6_7 | 1.7.1-ibm-1:1.7.1.3.40-1jpp.1.el6_7 |
redhat/spacewalk-java | <0:2.0.2-109.el6 | 0:2.0.2-109.el6 |
redhat/spacewalk-java | <0:2.3.8-146.el6 | 0:2.3.8-146.el6 |
Oracle Java SE 7 | =1.7.0-update85 | |
Oracle Java SE 7 | =1.8.0-update60 | |
Oracle JRE | =1.7.0-update_85 | |
Oracle JRE | =1.8.0-update_60 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Appears in the following advisories)
CVE-2015-4810 has a CVSSv2 score of 6.9, indicating a medium severity vulnerability.
To fix CVE-2015-4810, update to the recommended Java versions specified in the remediation package list.
CVE-2015-4810 affects Oracle Java SE 7u91 and 8u65 as well as various IBM Java versions.
CVE-2015-4810 is categorized as a local vulnerability since its access vector is local.
CVE-2015-4810 affects the Deployment component of Oracle Java.