MEDIUM · 4.0

CVE-2016-0448

Unspecified vulnerability in the Java SE and Java SE Embedded components in Oracle Java SE 6u105, 7u91, and 8u66, and Java SE Embedded 8u65 allows remote authenticated users to affect confidentiality ...

Vulnerability Description

Unspecified vulnerability in the Java SE and Java SE Embedded components in Oracle Java SE 6u105, 7u91, and 8u66, and Java SE Embedded 8u65 allows remote authenticated users to affect confidentiality via vectors related to JMX.

CVSS Score

4.0

MEDIUM

AV:N/AC:L/Au:S/C:P/I:N/A:N
Confidentiality
PARTIAL
Integrity
NONE
Availability
NONE

Affected Products

VendorProductVersions
OracleJdk1.6.0
OracleJre1.6.0
CanonicalUbuntu Linux12.04

References

FAQ

What is CVE-2016-0448?

CVE-2016-0448 is a vulnerability with a CVSS score of 4.0 (MEDIUM). Unspecified vulnerability in the Java SE and Java SE Embedded components in Oracle Java SE 6u105, 7u91, and 8u66, and Java SE Embedded 8u65 allows remote authenticated users to affect confidentiality ...

How severe is CVE-2016-0448?

CVE-2016-0448 has been rated MEDIUM with a CVSS base score of 4.0/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2016-0448?

Check the references section above for vendor advisories and patch information. Affected products include: Oracle Jdk, Oracle Jre, Canonical Ubuntu Linux.