Executive brief
An unspecified vulnerability in Oracle Java SE and JRockit's Java Management Extensions (JMX) component allows remote attackers to compromise confidentiality, integrity, and availability. The flaw can be exploited via sandboxed Java Web Start applications, sandboxed Java applets, or by supplying data directly to APIs such as through web services.
Affected products
- Oracle Java SE 6u113, 7u99, 8u77
- Oracle Java SE Embedded 8u77
- Oracle JRockit R28.3.9
Timeline
- 2016-04-19: advisory: Initial Oracle Critical Patch Update (CPU) advisory published.
- 2023-05-12: disclosed: Publication date of the NVD record.