First published: Tue Oct 20 2015(Updated: )
Unspecified vulnerability in Oracle Java SE 7u85 and 8u60, and Java SE Embedded 8u51, allows remote attackers to affect confidentiality via unknown vectors related to 2D.
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle JDK 6 | =1.7.0-update85 | |
Oracle JDK 6 | =1.8.0-update51 | |
Oracle JDK 6 | =1.8.0-update60 | |
Oracle Java Runtime Environment (JRE) | =1.7.0-update_85 | |
Oracle Java Runtime Environment (JRE) | =1.8.0-update_51 | |
Oracle Java Runtime Environment (JRE) | =1.8.0-update_60 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-4840 has a critical severity level due to its potential impact on confidentiality through out of bounds access.
To remediate CVE-2015-4840, upgrade to the latest version of Oracle Java SE that addresses this vulnerability.
CVE-2015-4840 affects Oracle Java SE 7u85, 8u60, and Java SE Embedded 8u51.
CVE-2015-4840 can be exploited by remote attackers to disclose sensitive information through unspecified vectors.
There is no official workaround for CVE-2015-4840; the recommended action is to update to a patched version.