Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Libraries). Supported versions that are affected are Java SE: 7u251, 8u241, 11.0.6 and 14; Java SE Embedded: 8u241. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Java SE, Java SE Embedded, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Java SE, Java SE Embedded. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.0 Base Score 8.3 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H).
{
"unresolved_ranges": [
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:netapp:active_iq_unified_manager:*:*:*:*:*:vsphere:*:*",
"extracted_events": [
{
"introduced": "9.5"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:netapp:active_iq_unified_manager:*:*:*:*:*:windows:*:*",
"extracted_events": [
{
"introduced": "7.3"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:netapp:e-series_santricity_os_controller:*:*:*:*:*:*:*:*",
"extracted_events": [
{
"introduced": "11.0.0"
},
{
"last_affected": "11.70.2"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:netapp:storagegrid:*:*:*:*:*:*:*:*",
"extracted_events": [
{
"introduced": "9.0.0"
},
{
"last_affected": "9.0.4"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:jdk:1.7.0:update251:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "1.7.0-update251"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:jdk:1.8.0:update241:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "1.8.0-update241"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:jdk:11.0.6:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "11.0.6"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:jdk:14.0.0:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "14.0.0"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:jre:1.7.0:update_251:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "1.7.0-update_251"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:jre:1.8.0:update_241:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "1.8.0-update_241"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:jre:11.0.6:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "11.0.6"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:jre:14.0.0:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "14.0.0"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:openjdk:*:*:*:*:*:*:*:*",
"extracted_events": [
{
"introduced": "11"
},
{
"last_affected": "11.0.6"
},
{
"introduced": "13"
},
{
"last_affected": "13.0.2"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:openjdk:7:-:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "7-NA"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:openjdk:7:update10:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "7-update10"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:openjdk:7:update11:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "7-update11"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:openjdk:7:update13:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "7-update13"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:openjdk:7:update151:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "7-update151"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:openjdk:7:update15:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "7-update15"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:openjdk:7:update161:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "7-update161"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:openjdk:7:update171:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "7-update171"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:openjdk:7:update17:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "7-update17"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:openjdk:7:update181:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "7-update181"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:openjdk:7:update191:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "7-update191"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:openjdk:7:update1:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "7-update1"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:openjdk:7:update201:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "7-update201"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:openjdk:7:update211:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "7-update211"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:openjdk:7:update21:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "7-update21"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:openjdk:7:update221:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "7-update221"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:openjdk:7:update231:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "7-update231"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:openjdk:7:update241:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "7-update241"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:openjdk:7:update251:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "7-update251"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:openjdk:7:update2:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "7-update2"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:openjdk:7:update3:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "7-update3"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:openjdk:7:update4:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "7-update4"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:openjdk:7:update5:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "7-update5"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:openjdk:7:update6:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "7-update6"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:openjdk:7:update7:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "7-update7"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:openjdk:7:update9:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "7-update9"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:openjdk:8:-:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "8-NA"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:openjdk:8:update141:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "8-update141"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:openjdk:8:update151:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "8-update151"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:openjdk:8:update152:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "8-update152"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:openjdk:8:update161:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "8-update161"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:openjdk:8:update162:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "8-update162"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:openjdk:8:update171:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "8-update171"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:openjdk:8:update172:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "8-update172"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:openjdk:8:update181:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "8-update181"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:openjdk:8:update191:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "8-update191"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:openjdk:8:update192:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "8-update192"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:openjdk:8:update201:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "8-update201"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:openjdk:8:update202:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "8-update202"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:openjdk:8:update211:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "8-update211"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:openjdk:8:update212:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "8-update212"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:openjdk:8:update221:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "8-update221"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:openjdk:8:update231:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "8-update231"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:openjdk:8:update241:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "8-update241"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:a:oracle:openjdk:8:update5:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "8-update5"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:esm:*:*:*",
"extracted_events": [
{
"last_affected": "16.04"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:*",
"extracted_events": [
{
"last_affected": "18.04"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "8.0"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "9.0"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:o:fedoraproject:fedora:30:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "30"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:o:fedoraproject:fedora:31:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "31"
}
]
},
{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:o:fedoraproject:fedora:32:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "32"
}
]
}
]
}{
"source": "CPE_FIELD",
"cpe": "cpe:2.3:o:canonical:ubuntu_linux:19.10:*:*:*:*:*:*:*",
"extracted_events": [
{
"introduced": "0"
},
{
"last_affected": "19.10"
}
]
}{
"source": "CPE_FIELD",
"cpe": [
"cpe:2.3:a:oracle:openjdk:7:update101:*:*:*:*:*:*",
"cpe:2.3:a:oracle:openjdk:7:update111:*:*:*:*:*:*",
"cpe:2.3:a:oracle:openjdk:7:update121:*:*:*:*:*:*",
"cpe:2.3:a:oracle:openjdk:7:update131:*:*:*:*:*:*",
"cpe:2.3:a:oracle:openjdk:7:update141:*:*:*:*:*:*",
"cpe:2.3:a:oracle:openjdk:7:update25:*:*:*:*:*:*",
"cpe:2.3:a:oracle:openjdk:7:update40:*:*:*:*:*:*",
"cpe:2.3:a:oracle:openjdk:7:update45:*:*:*:*:*:*",
"cpe:2.3:a:oracle:openjdk:7:update51:*:*:*:*:*:*",
"cpe:2.3:a:oracle:openjdk:7:update55:*:*:*:*:*:*",
"cpe:2.3:a:oracle:openjdk:7:update60:*:*:*:*:*:*",
"cpe:2.3:a:oracle:openjdk:7:update65:*:*:*:*:*:*",
"cpe:2.3:a:oracle:openjdk:7:update67:*:*:*:*:*:*",
"cpe:2.3:a:oracle:openjdk:7:update72:*:*:*:*:*:*",
"cpe:2.3:a:oracle:openjdk:7:update76:*:*:*:*:*:*",
"cpe:2.3:a:oracle:openjdk:7:update80:*:*:*:*:*:*",
"cpe:2.3:a:oracle:openjdk:7:update85:*:*:*:*:*:*",
"cpe:2.3:a:oracle:openjdk:7:update91:*:*:*:*:*:*",
"cpe:2.3:a:oracle:openjdk:7:update95:*:*:*:*:*:*",
"cpe:2.3:a:oracle:openjdk:7:update97:*:*:*:*:*:*",
"cpe:2.3:a:oracle:openjdk:7:update99:*:*:*:*:*:*",
"cpe:2.3:a:oracle:openjdk:8:update101:*:*:*:*:*:*",
"cpe:2.3:a:oracle:openjdk:8:update102:*:*:*:*:*:*",
"cpe:2.3:a:oracle:openjdk:8:update11:*:*:*:*:*:*",
"cpe:2.3:a:oracle:openjdk:8:update111:*:*:*:*:*:*",
"cpe:2.3:a:oracle:openjdk:8:update112:*:*:*:*:*:*",
"cpe:2.3:a:oracle:openjdk:8:update20:*:*:*:*:*:*",
"cpe:2.3:a:oracle:openjdk:8:update25:*:*:*:*:*:*",
"cpe:2.3:a:oracle:openjdk:8:update31:*:*:*:*:*:*",
"cpe:2.3:a:oracle:openjdk:8:update40:*:*:*:*:*:*",
"cpe:2.3:a:oracle:openjdk:8:update45:*:*:*:*:*:*",
"cpe:2.3:a:oracle:openjdk:8:update51:*:*:*:*:*:*",
"cpe:2.3:a:oracle:openjdk:8:update60:*:*:*:*:*:*",
"cpe:2.3:a:oracle:openjdk:8:update65:*:*:*:*:*:*",
"cpe:2.3:a:oracle:openjdk:8:update66:*:*:*:*:*:*",
"cpe:2.3:a:oracle:openjdk:8:update71:*:*:*:*:*:*",
"cpe:2.3:a:oracle:openjdk:8:update72:*:*:*:*:*:*",
"cpe:2.3:a:oracle:openjdk:8:update73:*:*:*:*:*:*",
"cpe:2.3:a:oracle:openjdk:8:update74:*:*:*:*:*:*",
"cpe:2.3:a:oracle:openjdk:8:update77:*:*:*:*:*:*",
"cpe:2.3:a:oracle:openjdk:8:update91:*:*:*:*:*:*",
"cpe:2.3:a:oracle:openjdk:8:update92:*:*:*:*:*:*",
"cpe:2.3:a:oracle:openjdk:14:*:*:*:*:*:*:*",
"cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*",
"cpe:2.3:o:opensuse:leap:15.1:*:*:*:*:*:*:*",
"cpe:2.3:o:opensuse:leap:15.2:*:*:*:*:*:*:*"
],
"extracted_events": [
{
"introduced": "0"
},
{
"last_affected": "7-update101"
},
{
"last_affected": "7-update111"
},
{
"last_affected": "7-update121"
},
{
"last_affected": "7-update131"
},
{
"last_affected": "7-update141"
},
{
"last_affected": "7-update25"
},
{
"last_affected": "7-update40"
},
{
"last_affected": "7-update45"
},
{
"last_affected": "7-update51"
},
{
"last_affected": "7-update55"
},
{
"last_affected": "7-update60"
},
{
"last_affected": "7-update65"
},
{
"last_affected": "7-update67"
},
{
"last_affected": "7-update72"
},
{
"last_affected": "7-update76"
},
{
"last_affected": "7-update80"
},
{
"last_affected": "7-update85"
},
{
"last_affected": "7-update91"
},
{
"last_affected": "7-update95"
},
{
"last_affected": "7-update97"
},
{
"last_affected": "7-update99"
},
{
"last_affected": "8-update101"
},
{
"last_affected": "8-update102"
},
{
"last_affected": "8-update11"
},
{
"last_affected": "8-update111"
},
{
"last_affected": "8-update112"
},
{
"last_affected": "8-update20"
},
{
"last_affected": "8-update25"
},
{
"last_affected": "8-update31"
},
{
"last_affected": "8-update40"
},
{
"last_affected": "8-update45"
},
{
"last_affected": "8-update51"
},
{
"last_affected": "8-update60"
},
{
"last_affected": "8-update65"
},
{
"last_affected": "8-update66"
},
{
"last_affected": "8-update71"
},
{
"last_affected": "8-update72"
},
{
"last_affected": "8-update73"
},
{
"last_affected": "8-update74"
},
{
"last_affected": "8-update77"
},
{
"last_affected": "8-update91"
},
{
"last_affected": "8-update92"
},
{
"last_affected": "14"
},
{
"last_affected": "10.0"
},
{
"last_affected": "15.1"
},
{
"last_affected": "15.2"
}
]
}{
"source": "CPE_FIELD",
"cpe": [
"cpe:2.3:a:oracle:openjdk:8:update121:*:*:*:*:*:*",
"cpe:2.3:a:oracle:openjdk:8:update131:*:*:*:*:*:*"
],
"extracted_events": [
{
"introduced": "0"
},
{
"last_affected": "8-update121"
},
{
"last_affected": "8-update131"
}
]
}