CVE Vulnerabilities

CVE-2016-0483

Published: Jan 21, 2016 | Modified: Apr 12, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
10 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
6.8 CRITICAL
AV:N/AC:M/Au:N/C:P/I:P/A:P
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Unspecified vulnerability in Oracle Java SE 6u105, 7u91, and 8u66; Java SE Embedded 8u65; and JRockit R28.3.8 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to AWT. NOTE: the previous information is from the January 2016 CPU. Oracle has not commented on third-party claims that this is a heap-based buffer overflow in the readImage function, which allows remote attackers to execute arbitrary code via crafted image data.

Affected Software

NameVendorStart VersionEnd Version
JdkOracle1.6.0-update105 (including)1.6.0-update105 (including)
JdkOracle1.7.0-update91 (including)1.7.0-update91 (including)
JdkOracle1.8.0-update66 (including)1.8.0-update66 (including)
JreOracle1.6.0-update105 (including)1.6.0-update105 (including)
JreOracle1.7.0-update91 (including)1.7.0-update91 (including)
JreOracle1.8.0-update66 (including)1.8.0-update66 (including)
Oracle Java for Red Hat Enterprise Linux 5RedHatjava-1.7.0-oracle-1:1.7.0.95-1jpp.1.el5_11*
Oracle Java for Red Hat Enterprise Linux 5RedHatjava-1.6.0-sun-1:1.6.0.111-1jpp.3.el5_11*
Oracle Java for Red Hat Enterprise Linux 6RedHatjava-1.8.0-oracle-1:1.8.0.71-1jpp.1.el6_7*
Oracle Java for Red Hat Enterprise Linux 6RedHatjava-1.7.0-oracle-1:1.7.0.95-1jpp.1.el6_7*
Oracle Java for Red Hat Enterprise Linux 6RedHatjava-1.6.0-sun-1:1.6.0.111-1jpp.3.el6_7*
Oracle Java for Red Hat Enterprise Linux 7RedHatjava-1.8.0-oracle-1:1.8.0.71-1jpp.1.el7*
Oracle Java for Red Hat Enterprise Linux 7RedHatjava-1.7.0-oracle-1:1.7.0.95-1jpp.2.el7*
Oracle Java for Red Hat Enterprise Linux 7RedHatjava-1.6.0-sun-1:1.6.0.111-1jpp.1.el7*
Red Hat Enterprise Linux 5RedHatjava-1.7.0-openjdk-1:1.7.0.95-2.6.4.1.el5_11*
Red Hat Enterprise Linux 5RedHatjava-1.6.0-openjdk-1:1.6.0.38-1.13.10.0.el5_11*
Red Hat Enterprise Linux 5 SupplementaryRedHatjava-1.7.0-ibm-1:1.7.0.9.30-1jpp.1.el5*
Red Hat Enterprise Linux 5 SupplementaryRedHatjava-1.6.0-ibm-1:1.6.0.16.20-1jpp.1.el5*
Red Hat Enterprise Linux 6RedHatjava-1.8.0-openjdk-1:1.8.0.71-1.b15.el6_7*
Red Hat Enterprise Linux 6RedHatjava-1.7.0-openjdk-1:1.7.0.95-2.6.4.0.el6_7*
Red Hat Enterprise Linux 6RedHatjava-1.6.0-openjdk-1:1.6.0.38-1.13.10.0.el6_7*
Red Hat Enterprise Linux 6 SupplementaryRedHatjava-1.7.1-ibm-1:1.7.1.3.30-1jpp.2.el6_7*
Red Hat Enterprise Linux 6 SupplementaryRedHatjava-1.6.0-ibm-1:1.6.0.16.20-1jpp.1.el6_7*
Red Hat Enterprise Linux 7RedHatjava-1.8.0-openjdk-1:1.8.0.71-2.b15.el7_2*
Red Hat Enterprise Linux 7RedHatjava-1.7.0-openjdk-1:1.7.0.95-2.6.4.0.el7_2*
Red Hat Enterprise Linux 7RedHatjava-1.6.0-openjdk-1:1.6.0.38-1.13.10.0.el7_2*
Red Hat Enterprise Linux 7 SupplementaryRedHatjava-1.8.0-ibm-1:1.8.0.2.10-1jpp.1.el7*
Red Hat Enterprise Linux 7 SupplementaryRedHatjava-1.7.1-ibm-1:1.7.1.3.30-1jpp.1.el7*
Red Hat Satellite 5.6RedHatjava-1.7.0-ibm-1:1.7.0.9.40-1jpp.1.el5*
Red Hat Satellite 5.6RedHatjava-1.7.1-ibm-1:1.7.1.3.40-1jpp.1.el6_7*
Red Hat Satellite 5.6RedHatspacewalk-java-0:2.0.2-109.el5sat*
Red Hat Satellite 5.7RedHatjava-1.7.1-ibm-1:1.7.1.3.40-1jpp.1.el6_7*
Red Hat Satellite 5.7RedHatspacewalk-java-0:2.3.8-146.el6sat*
Openjdk-6Ubuntuprecise*
Openjdk-6Ubuntutrusty*
Openjdk-6Ubuntuvivid*
Openjdk-6Ubuntuwily*
Openjdk-7Ubuntuprecise*
Openjdk-7Ubuntutrusty*
Openjdk-7Ubuntuvivid*
Openjdk-7Ubuntuwily*
Openjdk-8Ubuntuupstream*
Openjdk-8Ubuntuvivid*
Openjdk-8Ubuntuwily*

References