CVE
- Id
- 67831
- CVE No.
- CVE-2014-0422
- Status
- Candidate
- Description
- Unspecified vulnerability in Oracle Java SE 5.0u55, 6u65, and 7u45; Java SE Embedded 7u45; and OpenJDK 7 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to JNDI. NOTE: the previous information is from the January 2014 CPU. Oracle has not commented on third-party claims that the issue is related to missing package access checks in the Naming / JNDI component, which allows attackers to escape the sandbox.
- Phase
- Assigned (20131212)
- Votes
- None (candidate not yet proposed)
- Comments
Related CVE References
| Id | CVE Id | CVE No. | Reference | Actions |
|---|---|---|---|---|
| 655109 | 67831 | CVE-2014-0422 | CONFIRM:http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html | View |
| 655110 | 67831 | CVE-2014-0422 | CONFIRM:https://bugzilla.redhat.com/show_bug.cgi?id=1051528 | View |
| 655111 | 67831 | CVE-2014-0422 | CONFIRM:https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777 | View |
| 655112 | 67831 | CVE-2014-0422 | HP:HPSBUX02972 | View |
| 655113 | 67831 | CVE-2014-0422 | URL:http://marc.info/?l=bugtraq&m=139402697611681&w=2 | View |
| 655114 | 67831 | CVE-2014-0422 | HP:HPSBUX02973 | View |
| 655115 | 67831 | CVE-2014-0422 | URL:http://marc.info/?l=bugtraq&m=139402749111889&w=2 | View |
| 655116 | 67831 | CVE-2014-0422 | HP:SSRT101454 | View |
| 655117 | 67831 | CVE-2014-0422 | URL:http://marc.info/?l=bugtraq&m=139402697611681&w=2 | View |
| 655118 | 67831 | CVE-2014-0422 | HP:SSRT101455 | View |
| 655119 | 67831 | CVE-2014-0422 | URL:http://marc.info/?l=bugtraq&m=139402749111889&w=2 | View |
| 655120 | 67831 | CVE-2014-0422 | REDHAT:RHSA-2014:0026 | View |
| 655121 | 67831 | CVE-2014-0422 | URL:http://rhn.redhat.com/errata/RHSA-2014-0026.html | View |
| 655122 | 67831 | CVE-2014-0422 | REDHAT:RHSA-2014:0027 | View |
| 655123 | 67831 | CVE-2014-0422 | URL:http://rhn.redhat.com/errata/RHSA-2014-0027.html | View |
| 655124 | 67831 | CVE-2014-0422 | REDHAT:RHSA-2014:0097 | View |
| 655125 | 67831 | CVE-2014-0422 | URL:http://rhn.redhat.com/errata/RHSA-2014-0097.html | View |
| 655126 | 67831 | CVE-2014-0422 | REDHAT:RHSA-2014:0136 | View |
| 655127 | 67831 | CVE-2014-0422 | URL:http://rhn.redhat.com/errata/RHSA-2014-0136.html | View |
| 655128 | 67831 | CVE-2014-0422 | REDHAT:RHSA-2014:0030 | View |
| 655129 | 67831 | CVE-2014-0422 | URL:http://rhn.redhat.com/errata/RHSA-2014-0030.html | View |
| 655130 | 67831 | CVE-2014-0422 | REDHAT:RHSA-2014:0134 | View |
| 655131 | 67831 | CVE-2014-0422 | URL:http://rhn.redhat.com/errata/RHSA-2014-0134.html | View |
| 655132 | 67831 | CVE-2014-0422 | REDHAT:RHSA-2014:0135 | View |
| 655133 | 67831 | CVE-2014-0422 | URL:http://rhn.redhat.com/errata/RHSA-2014-0135.html | View |
| 655134 | 67831 | CVE-2014-0422 | SUSE:openSUSE-SU-2014:0174 | View |
| 655135 | 67831 | CVE-2014-0422 | URL:http://lists.opensuse.org/opensuse-updates/2014-01/msg00105.html | View |
| 655136 | 67831 | CVE-2014-0422 | SUSE:SUSE-SU-2014:0246 | View |
| 655137 | 67831 | CVE-2014-0422 | URL:http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00009.html | View |
| 655138 | 67831 | CVE-2014-0422 | SUSE:SUSE-SU-2014:0266 | View |
| 655139 | 67831 | CVE-2014-0422 | URL:http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00012.html | View |
| 655140 | 67831 | CVE-2014-0422 | SUSE:openSUSE-SU-2014:0177 | View |
| 655141 | 67831 | CVE-2014-0422 | URL:http://lists.opensuse.org/opensuse-updates/2014-01/msg00107.html | View |
| 655142 | 67831 | CVE-2014-0422 | SUSE:openSUSE-SU-2014:0180 | View |
| 655143 | 67831 | CVE-2014-0422 | URL:http://lists.opensuse.org/opensuse-updates/2014-02/msg00000.html | View |
| 655144 | 67831 | CVE-2014-0422 | SUSE:SUSE-SU-2014:0451 | View |
| 655145 | 67831 | CVE-2014-0422 | URL:http://lists.opensuse.org/opensuse-security-announce/2014-03/msg00024.html | View |
| 655146 | 67831 | CVE-2014-0422 | UBUNTU:USN-2089-1 | View |
| 655147 | 67831 | CVE-2014-0422 | URL:http://www.ubuntu.com/usn/USN-2089-1 | View |
| 655148 | 67831 | CVE-2014-0422 | UBUNTU:USN-2124-1 | View |
| 655149 | 67831 | CVE-2014-0422 | URL:http://www.ubuntu.com/usn/USN-2124-1 | View |
| 655150 | 67831 | CVE-2014-0422 | BID:64758 | View |
| 655151 | 67831 | CVE-2014-0422 | URL:http://www.securityfocus.com/bid/64758 | View |
| 655152 | 67831 | CVE-2014-0422 | BID:64921 | View |
| 655153 | 67831 | CVE-2014-0422 | URL:http://www.securityfocus.com/bid/64921 | View |
| 655154 | 67831 | CVE-2014-0422 | OSVDB:101997 | View |
| 655155 | 67831 | CVE-2014-0422 | URL:http://osvdb.org/101997 | View |
| 655156 | 67831 | CVE-2014-0422 | SECTRACK:1029608 | View |
| 655157 | 67831 | CVE-2014-0422 | URL:http://www.securitytracker.com/id/1029608 | View |
| 655158 | 67831 | CVE-2014-0422 | SECUNIA:56432 | View |
| 655159 | 67831 | CVE-2014-0422 | URL:http://secunia.com/advisories/56432 | View |
| 655160 | 67831 | CVE-2014-0422 | SECUNIA:56485 | View |
| 655161 | 67831 | CVE-2014-0422 | URL:http://secunia.com/advisories/56485 | View |
| 655162 | 67831 | CVE-2014-0422 | SECUNIA:56486 | View |
| 655163 | 67831 | CVE-2014-0422 | URL:http://secunia.com/advisories/56486 | View |
| 655164 | 67831 | CVE-2014-0422 | SECUNIA:56535 | View |
Related JVN
| Id | JVN No. | Title | Summary | CVE No. | CVE Id | CVSS_v2 | CVSS_v3 | JVN URL | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 12255 | JVNDB-2014-001130 | Oracle MySQL の MySQL Server における Performance Schema に関する脆弱性 | Oracle MySQL の MySQL Server には、Performance Schema に関する処理に不備があるため、可用性に影響のある脆弱性が存在します。 | CVE-2014-0430 | 67831 | 2.8 | http://jvndb.jvn.jp/ja/contents/2014/JVNDB-2014-001130.html | View |