CVE
- Id
- 67831
- CVE No.
- CVE-2014-0422
- Status
- Candidate
- Description
- Unspecified vulnerability in Oracle Java SE 5.0u55, 6u65, and 7u45; Java SE Embedded 7u45; and OpenJDK 7 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to JNDI. NOTE: the previous information is from the January 2014 CPU. Oracle has not commented on third-party claims that the issue is related to missing package access checks in the Naming / JNDI component, which allows attackers to escape the sandbox.
- Phase
- Assigned (20131212)
- Votes
- None (candidate not yet proposed)
- Comments
Related CVE References
Id | CVE Id | CVE No. | Reference | Actions |
---|---|---|---|---|
655109 | 67831 | CVE-2014-0422 | CONFIRM:http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html | View |
655110 | 67831 | CVE-2014-0422 | CONFIRM:https://bugzilla.redhat.com/show_bug.cgi?id=1051528 | View |
655111 | 67831 | CVE-2014-0422 | CONFIRM:https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04166777 | View |
655112 | 67831 | CVE-2014-0422 | HP:HPSBUX02972 | View |
655113 | 67831 | CVE-2014-0422 | URL:http://marc.info/?l=bugtraq&m=139402697611681&w=2 | View |
655114 | 67831 | CVE-2014-0422 | HP:HPSBUX02973 | View |
655115 | 67831 | CVE-2014-0422 | URL:http://marc.info/?l=bugtraq&m=139402749111889&w=2 | View |
655116 | 67831 | CVE-2014-0422 | HP:SSRT101454 | View |
655117 | 67831 | CVE-2014-0422 | URL:http://marc.info/?l=bugtraq&m=139402697611681&w=2 | View |
655118 | 67831 | CVE-2014-0422 | HP:SSRT101455 | View |
655119 | 67831 | CVE-2014-0422 | URL:http://marc.info/?l=bugtraq&m=139402749111889&w=2 | View |
655120 | 67831 | CVE-2014-0422 | REDHAT:RHSA-2014:0026 | View |
655121 | 67831 | CVE-2014-0422 | URL:http://rhn.redhat.com/errata/RHSA-2014-0026.html | View |
655122 | 67831 | CVE-2014-0422 | REDHAT:RHSA-2014:0027 | View |
655123 | 67831 | CVE-2014-0422 | URL:http://rhn.redhat.com/errata/RHSA-2014-0027.html | View |
655124 | 67831 | CVE-2014-0422 | REDHAT:RHSA-2014:0097 | View |
655125 | 67831 | CVE-2014-0422 | URL:http://rhn.redhat.com/errata/RHSA-2014-0097.html | View |
655126 | 67831 | CVE-2014-0422 | REDHAT:RHSA-2014:0136 | View |
655127 | 67831 | CVE-2014-0422 | URL:http://rhn.redhat.com/errata/RHSA-2014-0136.html | View |
655128 | 67831 | CVE-2014-0422 | REDHAT:RHSA-2014:0030 | View |
655129 | 67831 | CVE-2014-0422 | URL:http://rhn.redhat.com/errata/RHSA-2014-0030.html | View |
655130 | 67831 | CVE-2014-0422 | REDHAT:RHSA-2014:0134 | View |
655131 | 67831 | CVE-2014-0422 | URL:http://rhn.redhat.com/errata/RHSA-2014-0134.html | View |
655132 | 67831 | CVE-2014-0422 | REDHAT:RHSA-2014:0135 | View |
655133 | 67831 | CVE-2014-0422 | URL:http://rhn.redhat.com/errata/RHSA-2014-0135.html | View |
655134 | 67831 | CVE-2014-0422 | SUSE:openSUSE-SU-2014:0174 | View |
655135 | 67831 | CVE-2014-0422 | URL:http://lists.opensuse.org/opensuse-updates/2014-01/msg00105.html | View |
655136 | 67831 | CVE-2014-0422 | SUSE:SUSE-SU-2014:0246 | View |
655137 | 67831 | CVE-2014-0422 | URL:http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00009.html | View |
655138 | 67831 | CVE-2014-0422 | SUSE:SUSE-SU-2014:0266 | View |
655139 | 67831 | CVE-2014-0422 | URL:http://lists.opensuse.org/opensuse-security-announce/2014-02/msg00012.html | View |
655140 | 67831 | CVE-2014-0422 | SUSE:openSUSE-SU-2014:0177 | View |
655141 | 67831 | CVE-2014-0422 | URL:http://lists.opensuse.org/opensuse-updates/2014-01/msg00107.html | View |
655142 | 67831 | CVE-2014-0422 | SUSE:openSUSE-SU-2014:0180 | View |
655143 | 67831 | CVE-2014-0422 | URL:http://lists.opensuse.org/opensuse-updates/2014-02/msg00000.html | View |
655144 | 67831 | CVE-2014-0422 | SUSE:SUSE-SU-2014:0451 | View |
655145 | 67831 | CVE-2014-0422 | URL:http://lists.opensuse.org/opensuse-security-announce/2014-03/msg00024.html | View |
655146 | 67831 | CVE-2014-0422 | UBUNTU:USN-2089-1 | View |
655147 | 67831 | CVE-2014-0422 | URL:http://www.ubuntu.com/usn/USN-2089-1 | View |
655148 | 67831 | CVE-2014-0422 | UBUNTU:USN-2124-1 | View |
655149 | 67831 | CVE-2014-0422 | URL:http://www.ubuntu.com/usn/USN-2124-1 | View |
655150 | 67831 | CVE-2014-0422 | BID:64758 | View |
655151 | 67831 | CVE-2014-0422 | URL:http://www.securityfocus.com/bid/64758 | View |
655152 | 67831 | CVE-2014-0422 | BID:64921 | View |
655153 | 67831 | CVE-2014-0422 | URL:http://www.securityfocus.com/bid/64921 | View |
655154 | 67831 | CVE-2014-0422 | OSVDB:101997 | View |
655155 | 67831 | CVE-2014-0422 | URL:http://osvdb.org/101997 | View |
655156 | 67831 | CVE-2014-0422 | SECTRACK:1029608 | View |
655157 | 67831 | CVE-2014-0422 | URL:http://www.securitytracker.com/id/1029608 | View |
655158 | 67831 | CVE-2014-0422 | SECUNIA:56432 | View |
655159 | 67831 | CVE-2014-0422 | URL:http://secunia.com/advisories/56432 | View |
655160 | 67831 | CVE-2014-0422 | SECUNIA:56485 | View |
655161 | 67831 | CVE-2014-0422 | URL:http://secunia.com/advisories/56485 | View |
655162 | 67831 | CVE-2014-0422 | SECUNIA:56486 | View |
655163 | 67831 | CVE-2014-0422 | URL:http://secunia.com/advisories/56486 | View |
655164 | 67831 | CVE-2014-0422 | SECUNIA:56535 | View |
Related JVN
Id | JVN No. | Title | Summary | CVE No. | CVE Id | CVSS_v2 | CVSS_v3 | JVN URL | Actions |
---|---|---|---|---|---|---|---|---|---|
12255 | JVNDB-2014-001130 | Oracle MySQL の MySQL Server における Performance Schema に関する脆弱性 | Oracle MySQL の MySQL Server には、Performance Schema に関する処理に不備があるため、可用性に影響のある脆弱性が存在します。 | CVE-2014-0430 | 67831 | 2.8 | http://jvndb.jvn.jp/ja/contents/2014/JVNDB-2014-001130.html | View |