REDHAT-BUG-1639906: Medium severity oracle java se 7 vulnerability
Published Oct 16, 2018
·Updated
Oracle Java SE 8u191 and 11.0.1 fixes an unspecified vulnerability in the Serviceability component (CVE-2018-3211). Upstream has CVSS scored this issue as: 6.6/CVSS:3.0/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:N
External Reference:
https://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html#AppendixJAVA
Affected Software
1 affected component
Oracle Java Se>=8u191<=11.0.1
Event History
Oct 16, 2018
Data Sourced
via Red Hat·09:50 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of REDHAT-BUG-1639906?
The severity of REDHAT-BUG-1639906 is rated as 6.6 on the CVSS scale.
2
How do I fix REDHAT-BUG-1639906?
To fix REDHAT-BUG-1639906, upgrade to Oracle Java SE versions 8u191 or 11.0.1 or later.
3
What components are affected by REDHAT-BUG-1639906?
The vulnerability REDHAT-BUG-1639906 affects the Serviceability component of Oracle Java SE.
4
Does REDHAT-BUG-1639906 allow for remote exploitation?
Yes, REDHAT-BUG-1639906 has an attack vector that allows for local exploitation.
5
Is information confidentiality at risk due to REDHAT-BUG-1639906?
Yes, REDHAT-BUG-1639906 could lead to a violation of confidentiality and integrity.