First published: Thu Apr 28 2016(Updated: )
A buffer overflow flaw was fixed in IBM JDK 6 SR16-FP25, 7 SR9-FP40, 7R1 SR3-FP40, and 8 SR3: CVEID: <a href="https://access.redhat.com/security/cve/CVE-2016-0264">CVE-2016-0264</a> DESCRIPTION: A buffer overflow vulnerability in the IBM JVM facilitates arbitrary code execution under certain limited circumstances. CVSS Base Score: 5.6 CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L) <a href="http://www-01.ibm.com/support/docview.wss?uid=swg21980826">http://www-01.ibm.com/support/docview.wss?uid=swg21980826</a> External Reference: <a href="http://www.ibm.com/developerworks/java/jdk/alerts/#IBM_Security_Update_April_2016">http://www.ibm.com/developerworks/java/jdk/alerts/#IBM_Security_Update_April_2016</a>
Affected Software | Affected Version | How to fix |
---|---|---|
IBM JDK 8 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of REDHAT-BUG-1331359 is critical due to the potential for arbitrary code execution.
To fix REDHAT-BUG-1331359, update to the latest version of IBM JDK that addresses this buffer overflow vulnerability.
REDHAT-BUG-1331359 affects certain versions of IBM JDK, including 6 SR16-FP25, 7 SR9-FP40, 7R1 SR3-FP40, and 8 SR3.
REDHAT-BUG-1331359 is a buffer overflow vulnerability that can lead to arbitrary code execution.
Yes, REDHAT-BUG-1331359 corresponds to CVE-2016-0264, which highlights the same buffer overflow issue.