LOW · 3.5

CVE-2014-2398

Unspecified vulnerability in Oracle Java SE 5.0u61, 6u71, 7u51, and 8; JavaFX 2.2.51; and JRockit R27.8.1 and R28.3.1 allows remote authenticated users to affect integrity via unknown vectors related ...

Vulnerability Description

Unspecified vulnerability in Oracle Java SE 5.0u61, 6u71, 7u51, and 8; JavaFX 2.2.51; and JRockit R27.8.1 and R28.3.1 allows remote authenticated users to affect integrity via unknown vectors related to Javadoc.

CVSS Score

3.5

LOW

AV:N/AC:M/Au:S/C:N/I:P/A:N
Confidentiality
NONE
Integrity
PARTIAL
Availability
NONE

Affected Products

VendorProductVersions
CanonicalUbuntu Linux10.04
OracleJavafx2.2.51
OracleJdk1.5.0
OracleJre1.5.0
OracleJrockitr27.8.1
DebianDebian Linux6.0
IbmForms Viewer>= 4.0.0, < 4.0.0.3
MicrosoftWindows-

References

FAQ

What is CVE-2014-2398?

CVE-2014-2398 is a vulnerability with a CVSS score of 3.5 (LOW). Unspecified vulnerability in Oracle Java SE 5.0u61, 6u71, 7u51, and 8; JavaFX 2.2.51; and JRockit R27.8.1 and R28.3.1 allows remote authenticated users to affect integrity via unknown vectors related ...

How severe is CVE-2014-2398?

CVE-2014-2398 has been rated LOW with a CVSS base score of 3.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2014-2398?

Check the references section above for vendor advisories and patch information. Affected products include: Canonical Ubuntu Linux, Oracle Javafx, Oracle Jdk, Oracle Jre, Oracle Jrockit.