CVE
- Id
- 67785
- CVE No.
- CVE-2014-0376
- Status
- Candidate
- Description
- Unspecified vulnerability in Oracle Java SE 5.0u55, 6u65, and 7u45; Java SE Embedded 7u45; and OpenJDK 7 allows remote attackers to affect integrity via vectors related to JAXP. NOTE: the previous information is from the January 2014 CPU. Oracle has not commented on third-party claims that the issue is related to an improper check for "code permissions when creating document builder factories."
- Phase
- Assigned (20131212)
- Votes
- None (candidate not yet proposed)
- Comments
Related CVE References
Id | CVE Id | CVE No. | Reference | Actions |
---|---|---|---|---|
654190 | 67785 | CVE-2014-0376 | MISC:http://hg.openjdk.java.net/jdk7u/jdk7u/jaxp/rev/42be8e6266ab | View |
654191 | 67785 | CVE-2014-0376 | MISC:http://hg.openjdk.java.net/jdk7u/jdk7u/jaxp/rev/783ceae9b736 | View |
654192 | 67785 | CVE-2014-0376 | CONFIRM:http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html | View |
654193 | 67785 | CVE-2014-0376 | CONFIRM:https://bugzilla.redhat.com/show_bug.cgi?id=1051923 | View |
654194 | 67785 | CVE-2014-0376 | CONFIRM:https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777 | View |
654195 | 67785 | CVE-2014-0376 | HP:HPSBUX02972 | View |
654196 | 67785 | CVE-2014-0376 | URL:http://marc.info/?l=bugtraq&m=139402697611681&w=2 | View |
654197 | 67785 | CVE-2014-0376 | HP:HPSBUX02973 | View |
654198 | 67785 | CVE-2014-0376 | URL:http://marc.info/?l=bugtraq&m=139402749111889&w=2 | View |
654199 | 67785 | CVE-2014-0376 | HP:SSRT101454 | View |
654200 | 67785 | CVE-2014-0376 | URL:http://marc.info/?l=bugtraq&m=139402697611681&w=2 | View |
654201 | 67785 | CVE-2014-0376 | HP:SSRT101455 | View |
654202 | 67785 | CVE-2014-0376 | URL:http://marc.info/?l=bugtraq&m=139402749111889&w=2 | View |
654203 | 67785 | CVE-2014-0376 | REDHAT:RHSA-2014:0026 | View |
654204 | 67785 | CVE-2014-0376 | URL:http://rhn.redhat.com/errata/RHSA-2014-0026.html | View |
654205 | 67785 | CVE-2014-0376 | REDHAT:RHSA-2014:0027 | View |
654206 | 67785 | CVE-2014-0376 | URL:http://rhn.redhat.com/errata/RHSA-2014-0027.html | View |
654207 | 67785 | CVE-2014-0376 | REDHAT:RHSA-2014:0097 | View |
654208 | 67785 | CVE-2014-0376 | URL:http://rhn.redhat.com/errata/RHSA-2014-0097.html | View |
654209 | 67785 | CVE-2014-0376 | REDHAT:RHSA-2014:0136 | View |
654210 | 67785 | CVE-2014-0376 | URL:http://rhn.redhat.com/errata/RHSA-2014-0136.html | View |
654211 | 67785 | CVE-2014-0376 | REDHAT:RHSA-2014:0030 | View |
654212 | 67785 | CVE-2014-0376 | URL:http://rhn.redhat.com/errata/RHSA-2014-0030.html | View |
654213 | 67785 | CVE-2014-0376 | REDHAT:RHSA-2014:0134 | View |
654214 | 67785 | CVE-2014-0376 | URL:http://rhn.redhat.com/errata/RHSA-2014-0134.html | View |
654215 | 67785 | CVE-2014-0376 | REDHAT:RHSA-2014:0135 | View |
654216 | 67785 | CVE-2014-0376 | URL:http://rhn.redhat.com/errata/RHSA-2014-0135.html | View |
654217 | 67785 | CVE-2014-0376 | SUSE:openSUSE-SU-2014:0174 | View |
654218 | 67785 | CVE-2014-0376 | URL:http://lists.opensuse.org/opensuse-updates/2014-01/msg00105.html | View |
654219 | 67785 | CVE-2014-0376 | SUSE:SUSE-SU-2014:0246 | View |
654220 | 67785 | CVE-2014-0376 | URL:http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00009.html | View |
654221 | 67785 | CVE-2014-0376 | SUSE:SUSE-SU-2014:0266 | View |
654222 | 67785 | CVE-2014-0376 | URL:http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00012.html | View |
654223 | 67785 | CVE-2014-0376 | SUSE:openSUSE-SU-2014:0177 | View |
654224 | 67785 | CVE-2014-0376 | URL:http://lists.opensuse.org/opensuse-updates/2014-01/msg00107.html | View |
654225 | 67785 | CVE-2014-0376 | SUSE:openSUSE-SU-2014:0180 | View |
654226 | 67785 | CVE-2014-0376 | URL:http://lists.opensuse.org/opensuse-updates/2014-02/msg00000.html | View |
654227 | 67785 | CVE-2014-0376 | SUSE:SUSE-SU-2014:0451 | View |
654228 | 67785 | CVE-2014-0376 | URL:http://lists.opensuse.org/opensuse-security-announce/2014-03/msg00024.html | View |
654229 | 67785 | CVE-2014-0376 | UBUNTU:USN-2089-1 | View |
654230 | 67785 | CVE-2014-0376 | URL:http://www.ubuntu.com/usn/USN-2089-1 | View |
654231 | 67785 | CVE-2014-0376 | UBUNTU:USN-2124-1 | View |
654232 | 67785 | CVE-2014-0376 | URL:http://www.ubuntu.com/usn/USN-2124-1 | View |
654233 | 67785 | CVE-2014-0376 | BID:64758 | View |
654234 | 67785 | CVE-2014-0376 | URL:http://www.securityfocus.com/bid/64758 | View |
654235 | 67785 | CVE-2014-0376 | BID:64907 | View |
654236 | 67785 | CVE-2014-0376 | URL:http://www.securityfocus.com/bid/64907 | View |
654237 | 67785 | CVE-2014-0376 | OSVDB:102018 | View |
654238 | 67785 | CVE-2014-0376 | URL:http://osvdb.org/102018 | View |
654239 | 67785 | CVE-2014-0376 | SECTRACK:1029608 | View |
654240 | 67785 | CVE-2014-0376 | URL:http://www.securitytracker.com/id/1029608 | View |
654241 | 67785 | CVE-2014-0376 | SECUNIA:56432 | View |
654242 | 67785 | CVE-2014-0376 | URL:http://secunia.com/advisories/56432 | View |
654243 | 67785 | CVE-2014-0376 | SECUNIA:56485 | View |
654244 | 67785 | CVE-2014-0376 | URL:http://secunia.com/advisories/56485 | View |
654245 | 67785 | CVE-2014-0376 | SECUNIA:56486 | View |
654246 | 67785 | CVE-2014-0376 | URL:http://secunia.com/advisories/56486 | View |
654247 | 67785 | CVE-2014-0376 | SECUNIA:56535 | View |
654248 | 67785 | CVE-2014-0376 | URL:http://secunia.com/advisories/56535 | View |
654249 | 67785 | CVE-2014-0376 | XF:oracle-cpujan2014-cve20140376(90350) | View |
Related JVN
Id | JVN No. | Title | Summary | CVE No. | CVE Id | CVSS_v2 | CVSS_v3 | JVN URL | Actions |
---|---|---|---|---|---|---|---|---|---|
13165 | JVNDB-2014-002040 | Oracle MySQL の MySQL Server における XML に関する脆弱性 | Oracle MySQL の MySQL Server には、XML に関する処理に不備があるため、可用性に影響のある脆弱性が存在します。 | CVE-2014-0384 | 67785 | 4 | http://jvndb.jvn.jp/ja/contents/2014/JVNDB-2014-002040.html | View |