CVE-2016-0264 Information

Description

Buffer overflow in the Java Virtual Machine (JVM) in IBM SDK Java Technology Edition 6 before SR16 FP25 (6.0.16.25) 6 R1 before SR8 FP25 (6.1.8.25) 7 before SR9 FP40 (7.0.9.40) 7 R1 before SR3 FP40 (7.1.3.40) and 8 before SR3 (8.0.3.0) allows remote attackers to execute arbitrary code via unspecified vectors.

CVSS Vector

CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L

Reference

http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00039.html http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00040.html http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00042.html http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00058.html http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00059.html http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00061.html http://lists.opensuse.org/opensuse-security-announce/2016-05/msg00067.html http://lists.opensuse.org/opensuse-security-announce/2016-06/msg00002.html http://rhn.redhat.com/errata/RHSA-2016-0701.html http://rhn.redhat.com/errata/RHSA-2016-0702.html http://rhn.redhat.com/errata/RHSA-2016-0708.html http://rhn.redhat.com/errata/RHSA-2016-0716.html http://rhn.redhat.com/errata/RHSA-2016-1039.html http://www.securitytracker.com/id/1035953 http://www-01.ibm.com/support/docview.wss?uid=swg1IV84035 http://www-01.ibm.com/support/docview.wss?uid=swg21980826 https://access.redhat.com/errata/RHSA-2016:1430 https://access.redhat.com/errata/RHSA-2017:1216

Attack Complexity

HIGH

Privileges Required

NONE

User Interaction Required

NONE

Scope

NONE

Confidentiality Impact

UNCHANGED

Integrity Impact

LOW

Availability Impact

LOW

Base Score

LOW

Base Severity

5.6

Share on: