Vulnerability Description
Unspecified vulnerability in Oracle Java SE 6u95, 7u80, and 8u45, and Java SE Embedded 7u75 and 8u33 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries, a different vulnerability than CVE-2015-4732.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Oracle | Jdk | 1.6.0 |
| Oracle | Jre | 1.6.0 |
| Canonical | Ubuntu Linux | 12.04 |
| Debian | Debian Linux | 7.0 |
| Suse | Linux Enterprise Debuginfo | 11 |
| Opensuse | Opensuse | 13.1 |
| Suse | Linux Enterprise Desktop | 11 |
| Suse | Linux Enterprise Server | 12 |
| Redhat | Satellite | 5.6 |
| Redhat | Enterprise Linux Desktop | 5.0 |
| Redhat | Enterprise Linux Eus | 6.6 |
| Redhat | Enterprise Linux For Ibm Z Systems | 6.0_s390x |
| Redhat | Enterprise Linux For Ibm Z Systems Eus | 6.7_s390x |
| Redhat | Enterprise Linux For Power Big Endian | 6.0_ppc64 |
| Redhat | Enterprise Linux For Power Big Endian Eus | 6.7_ppc64 |
| Redhat | Enterprise Linux For Power Little Endian | 7.0_ppc64le |
| Redhat | Enterprise Linux For Power Little Endian Eus | 7.1_ppc64le |
| Redhat | Enterprise Linux Server | 5.0 |
| Redhat | Enterprise Linux Server Aus | 6.6 |
| Redhat | Enterprise Linux Server Tus | 6.6 |
References
- http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00039.htmlMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00040.htmlMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00046.htmlMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00047.htmlMailing ListThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-1228.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-1229.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-1230.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-1241.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-1242.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-1243.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-1485.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-1486.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-1488.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-1526.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-1544.htmlThird Party Advisory
FAQ
What is CVE-2015-2590?
CVE-2015-2590 is a vulnerability with a CVSS score of 9.8 (CRITICAL). Unspecified vulnerability in Oracle Java SE 6u95, 7u80, and 8u45, and Java SE Embedded 7u75 and 8u33 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors ...
How severe is CVE-2015-2590?
CVE-2015-2590 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2015-2590?
Check the references section above for vendor advisories and patch information. Affected products include: Oracle Jdk, Oracle Jre, Canonical Ubuntu Linux, Debian Debian Linux, Suse Linux Enterprise Debuginfo.