Oracle JRockit R27.8.3 / R28.3.3 Multiple Vulnerabilities (October 2014 CPU)

medium Nessus Plugin ID 78478

Synopsis

The remote Windows host contains a programming platform that is affected by multiple vulnerabilities.

Description

The remote host has a version of Oracle JRockit that is affected by multiple vulnerabilities in the following components :

- JAXP
- JSSE
- Libraries
- Security

Solution

Upgrade to version R27.8.4 / R28.3.4 or later as referenced in the October 2014 Oracle Critical Patch Update advisory.

See Also

http://www.nessus.org/u?1ada40cc

Plugin Details

Severity: Medium

ID: 78478

File Name: oracle_jrockit_cpu_oct_2014.nasl

Version: 1.7

Type: local

Agent: windows

Family: Windows

Published: 10/15/2014

Updated: 11/15/2018

Supported Sensors: Nessus Agent, Nessus

Risk Information

VPR

Risk Factor: Medium

Score: 4.0

CVSS v2

Risk Factor: Medium

Base Score: 5

Temporal Score: 3.7

Vector: CVSS2#AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Information

CPE: cpe:/a:oracle:jrockit

Required KB Items: installed_sw/Oracle JRockit

Exploit Ease: No known exploits are available

Patch Publication Date: 10/14/2014

Vulnerability Publication Date: 10/14/2014

Reference Information

CVE: CVE-2014-6457, CVE-2014-6512, CVE-2014-6517, CVE-2014-6558

BID: 70538, 70544, 70552, 70567